Cross-site scripting (XSS) vulnerability in docs/showdoc.php in Coppermine Photo Gallery (CPG) prior to 1.4.22 allows remote malicious users to inject arbitrary web script or HTML via the css parameter, a different vector than CVE-2008-0505.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
coppermine coppermine photo gallery 1.4.22 |