Description
ecard.php in Coppermine Photo Gallery (CPG) 1.5.46 has XSS via the sender_name, recipient_email, greetings, or recipient_name parameter.
Remediation
References
Related Vulnerabilities
phpList Access of Resource Using Incompatible Type ('Type Confusion') Vulnerability (CVE-2020-8547)
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-3541)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-1000356)
WordPress Plugin WP Courses LMS Cross-Site Scripting (2.0.43)