CVE-2020-28365 | Sentrifugo 3.2 HTTP Header X-Forwarded-For cross site scripting (WLX-2020-055)
A vulnerability was found in Sentrifugo 3.2. It has been classified as problematic. Affected is an unknown function of the component HTTP Header Handler. The manipulation of the argument X-Forwarded-For leads to cross site scripting.
This vulnerability is traded as CVE-2020-28365. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to replace the affected component with an alternative.