CVE-2020-29250

CXUUCMS V3 allows XSS via the first and third input fields to /public/admin.php.