Description
ecard.php in Coppermine Photo Gallery (CPG) 1.5.46 has XSS via the sender_name, recipient_email, greetings, or recipient_name parameter.
Remediation
References
Related Vulnerabilities
Jenkins Improper Handling of Inconsistent Structural Elements Vulnerability (CVE-2021-21640)
IBM RTC Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2020-4544)
MySQL CVE-2017-3320 Vulnerability (CVE-2017-3320)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3745)