CVE-2020-36978

Publication date

2026-01-27 18:51:04

Family

VulnCheck

State

PUBLISHED

Description

Froxlor Server Management Panel 0.10.16 contains a persistent cross-site scripting vulnerability in customer registration input fields. Attackers can inject malicious scripts through username, name, and firstname parameters to execute code when administrators view customer traffic modules.