MEDIUM · 5.4

CVE-2023-40851

Cross Site Scripting (XSS) vulnerability in Phpgurukul User Registration & Login and User Management System With admin panel 3.0 allows attackers to run arbitrary code via fname, lname, email, and con...

Vulnerability Description

Cross Site Scripting (XSS) vulnerability in Phpgurukul User Registration & Login and User Management System With admin panel 3.0 allows attackers to run arbitrary code via fname, lname, email, and contact fields of the user registration page.

CVSS Score

5.4

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
CHANGED
Confidentiality
LOW
Integrity
LOW
Availability
NONE

Affected Products

VendorProductVersions
User Registration \& Login And User Management System With Admin Panel ProjectUser Registration \& Login And User Management System With Admin Panel3.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-40851?

CVE-2023-40851 is a vulnerability with a CVSS score of 5.4 (MEDIUM). Cross Site Scripting (XSS) vulnerability in Phpgurukul User Registration & Login and User Management System With admin panel 3.0 allows attackers to run arbitrary code via fname, lname, email, and con...

How severe is CVE-2023-40851?

CVE-2023-40851 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-40851?

Check the references section above for vendor advisories and patch information. Affected products include: User Registration \& Login And User Management System With Admin Panel Project User Registration \& Login And User Management System With Admin Panel.