Multiple cross-site scripting (XSS) vulnerabilities in LinPHA before 1.1.1 allow remote attackers to inject arbitrary web script or HTML via (1) RSS/RSS.php and (2) possibly other vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linpha | Linpha | 1.0 (including) | 1.0 (including) |
Linpha | Linpha | 1.1.0 (including) | 1.1.0 (including) |