CVE-2023-27225

A

cross-site scripting (XSS) vulnerability in User Registration & Login and User Management System with Admin Panel v3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the first and last name field.

Configurations

Configuration 1 (hide)

cpe:2.3:a:user_registration_\&_login_and_user_management_system_with_admin_panel_project:user_registration_\&_login_and_user_management_system_with_admin_panel:3.0:*:*:*:*:*:*:*

History

21 Nov 2024, 07:52

Type Values Removed Values Added
References () https://medium.com/%40ridheshgohil1092/my-first-cve-2023-27225-f232650f6cde - () https://medium.com/%40ridheshgohil1092/my-first-cve-2023-27225-f232650f6cde -
References () https://packetstormsecurity.com - Third Party Advisory, VDB Entry () https://packetstormsecurity.com - Third Party Advisory, VDB Entry

Information

Published : 2023-07-06 02:15

Updated : 2024-11-21 07:52


NVD link : CVE-2023-27225

Mitre link : CVE-2023-27225

CVE.ORG link : CVE-2023-27225


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')