Description
ecard.php in Coppermine Photo Gallery (CPG) 1.5.46 has XSS via the sender_name, recipient_email, greetings, or recipient_name parameter.
Remediation
References
Related Vulnerabilities
Moodle Improper Input Validation Vulnerability (CVE-2009-1171)
WordPress Plugin Website FAQ 'website-faq-widget.php' SQL Injection (1.0)
WordPress Plugin Limit Login Attempts Reloaded Security Bypass (2.17.3)
Atlassian Jira URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2019-11585)
WordPress Plugin Image Gallery-Responsive Photo Gallery Cross-Site Scripting (1.7.0)