MySimpleNews Remotely Readable Administrator Password Vulnerability

The administrator password can be found in the HTML code for admin.html below:
moncode = prompt('MySimpleNews - Administration','');
if (moncode != "[ADMINPASSWORD]")
{
location.href="about:Erreur 403";
}


 

Privacy Statement
Copyright 2010, SecurityFocus