ecard.php in Coppermine Photo Gallery (CPG) 1.5.46 has XSS via the sender_name, recipient_email, greetings, or recipient_name parameter.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-05-07T17:41:50

Updated: 2019-05-07T17:41:50

Reserved: 2018-07-20T00:00:00


Link: CVE-2018-14478

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-05-07T18:29:00.677

Modified: 2023-11-07T02:52:57.970


Link: CVE-2018-14478

JSON object: View

cve-icon Redhat Information

No data.

CWE