---
id: CVE-2024-31027
title: >-
  Cross Site Scripting vulnerability in Greek Universities Network (GUnet) Open
  eClass Platform v.3.15 allows a remote attacker to execute arbitrary code via
  the last name, first name, and username parameters in the user registration
  funct…
summary: >-
  Cross Site Scripting vulnerability in Greek Universities Network (GUnet) Open
  eClass Platform v.3.15 allows a remote attacker to execute arbitrary code via
  the last name, first name, and username parameters in the user registration
  funct…
severity: none
published: '2026-09-29'
updated: '2026-09-29'
sourceUpdated: '2026-09-29T20:17:08.700'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-31027'
references:
  - url: 'https://panagiotiscp.github.io/cve-2024-31027-stored-xss-user-info/'
    label: cve@mitre.org
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-29T20:46:06.427Z'
---

## Overview

Cross Site Scripting vulnerability in Greek Universities Network (GUnet) Open eClass Platform v.3.15 allows a remote attacker to execute arbitrary code via the last name, first name, and username parameters in the user registration functionality.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
