Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-102062
HistoryOct 16, 2021 - 12:00 a.m.

ZZCMS subzs.php component SQL injection vulnerability

2021-10-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
7

0.002 Low

EPSS

Percentile

52.5%

ZZCMS is a content management system (CMS) from the Zzcms team in China.ZZCMS version 2019 is vulnerable to SQL injection, which stems from the lack of effective filtering and escaping of SQL statements in the subzs.php component. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.002 Low

EPSS

Percentile

52.5%

Related for CNVD-2021-102062