Description
phprint.php in SugarCRM 3.5.1 has XSS via a parameter name in the query string (aka a $key variable).
Remediation
References
Related Vulnerabilities
WordPress Plugin Malware Scanner SQL Injection (4.7.2)
WordPress Plugin Web Application Firewall-website security Privilege Escalation (2.1.1)
WordPress Plugin bbPress Cross-Site Scripting (2.5.8)
WordPress Plugin WP Mailster Cross-Site Scripting (1.5.4.0)
Artifactory Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-41834)