Multiple cross-site scripting (XSS) vulnerabilities in LinPHA before 1.1.1 allow remote attackers to inject arbitrary web script or HTML via (1) RSS/RSS.php and (2) possibly other vectors.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Linpha | Linpha | 1.0 (including) | 1.0 (including) |
| Linpha | Linpha | 1.1.0 (including) | 1.1.0 (including) |