Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-102063
HistoryOct 16, 2021 - 12:00 a.m.

ZZCMS SQL Injection Vulnerability (CNVD-2021-102063)

2021-10-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.002 Low

EPSS

Percentile

59.8%

ZZCMS is a content management system (CMS) from the Zzcms team in China. ZZCMS version 2019 is vulnerable to SQL injection, which stems from the software’s lack of effective filtering and escaping of SQL statements. An attacker retrieves sensitive data via the dlid parameter in the cookie on the dl_sendmail.php page.

0.002 Low

EPSS

Percentile

59.8%

Related for CNVD-2021-102063