Multiple cross-site scripting (XSS) vulnerabilities in Serendipity (s9y) 1.0.1 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the media manager administration page.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Serendipity | Serendipity | * | 1.0.1 (including) |