{"id":"CVE-2020-29231","title":"EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page","summary":"EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page. This vulnerability can result in the attacker injecting the XSS payload in Admin Full Name and eac…","severity":"medium","cvss":5.4,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","cwe":["CWE-79"],"vendor":"egavilanmedia","product":"user_registration_and_login_system_with_admin_panel","affected":["user_registration_and_login_system_with_admin_panel = 1.0"],"published":"2020-12-30","updated":"2026-07-05","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2020-29231","references":[{"url":"https://github.com/hemantsolo/CVE-Reference/blob/main/CVE-2020-29231.md","label":"cve@mitre.org"},{"url":"http://egavilanmedia.com","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/hemantsolo/CVE-Reference/blob/main/CVE-2020-29231.md","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd"],"epss":0.00591,"epssPercentile":0.46685,"ingestedAt":"2026-07-05T02:00:01.353Z","slug":"CVE-2020-29231","body":"## Overview\n\nEGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page. This vulnerability can result in the attacker injecting the XSS payload in Admin Full Name and each time admin visits the Profile page from the admin panel, the XSS triggers.\n\n## Affected\n\n- `user_registration_and_login_system_with_admin_panel = 1.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":29.7,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}