CVE-2006-1348
gCards <1.45 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in index.php in Greg Neustaetter gCards 1.45 and earlier allows remote attackers to inject arbitrary web script or HTML via the lang[*][file] parameter, which is injected into an error message. NOTE: this issue might be resultant from CVE-2006-1346.
Exploits (1)
References (7)
Scores
EPSS
0.0885
EPSS Percentile
92.6%
Details
Status
published
Products (3)
greg_neustaetter/gcards
1.43
greg_neustaetter/gcards
1.44
greg_neustaetter/gcards
< 1.45
Published
Mar 22, 2006
Tracked Since
Feb 18, 2026