Dear Sir / Madam The Itsecteam has discovered a new bug in AEF Version 1.0.8 CMS and will be glad to report and public it . * more information about this bug is listed below : Topic : AEF Version 1.0.8 Bug Type : Cross Site Scripting Credit : ItSecTeam Remote : Yes Status : Bug Download Link :http://www.anelectron.com/downloads/ # mail : Bug@ItSecTeam.com # Dork : Powered By AEF Version 1.0.8 #Special Tnx : Amin Shokohi(Pejvak), 0xd41684c654 , r3dmove And All It Security Team Members #Website : WwW.ItSecTeam.com ########################## Exploit ############################# http://Site.Com/AEF/index.php?act=calendar&date=Xss