Vulnerability Details CVE-2008-7223
Multiple cross-site scripting (XSS) vulnerabilities in LinPHA before 1.3.3 allow remote attackers to inject arbitrary web script or HTML via (1) ftp/index.php, (2) viewer.php, (3) functions/other.php, (4) include/left_menu.class.php, or (5) plugins/stats/stats_view.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.3%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2008-7223
-
cpe:2.3:a:linpha:linpha:*
-
cpe:2.3:a:linpha:linpha:0.9.0
-
cpe:2.3:a:linpha:linpha:0.9.1
-
cpe:2.3:a:linpha:linpha:0.9.2
-
cpe:2.3:a:linpha:linpha:0.9.3
-
cpe:2.3:a:linpha:linpha:0.9.4
-
cpe:2.3:a:linpha:linpha:1.0
-
cpe:2.3:a:linpha:linpha:1.1.0
-
cpe:2.3:a:linpha:linpha:1.1.1
-
cpe:2.3:a:linpha:linpha:1.2.0
-
cpe:2.3:a:linpha:linpha:1.3.0
-
cpe:2.3:a:linpha:linpha:1.3.1