Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-102002
HistoryDec 12, 2021 - 12:00 a.m.

ZZCMS dl_sendmail.php SQL Injection Vulnerability

2021-12-1200:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.001 Low

EPSS

Percentile

37.7%

ZZCMS is a content management system (CMS) from the Zzcms team in China. ZZCMS is vulnerable to SQL injection, which stems from a missing validation of externally entered SQL statements in the id parameter of admin/dl_sendmail.php. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.001 Low

EPSS

Percentile

37.7%

Related for CNVD-2021-102002