Medium severity5.4NVD Advisory· Published Oct 22, 2021· Updated Jun 17, 2026
CVE-2020-28957
CVE-2020-28957
Description
Multiple cross-site scripting (XSS) vulnerabilities in the Customer Add module of Foxlor v0.10.16 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the name, firstname, or username input fields.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Foxlor/Foxlordescription
- ghsa-coords
Patches
Vulnerability mechanics
References
3- www.vulnerability-lab.com/get_content.phpnvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-cv24-vh45-4hjmghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-28957ghsaADVISORY
News mentions
0No linked articles in our index yet.