ZeroHour

CVE-2020-29231

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p46
Published
()
Modified
Description

EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page. This vulnerability can result in the attacker injecting the XSS payload in Admin Full Name and each time admin visits the Profile page from the admin panel, the XSS triggers.

Vendors
egavilanmedia
Products
user registration and login system with admin panel
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.