Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-103656
HistoryOct 16, 2021 - 12:00 a.m.

ZZCMS SQL Injection Vulnerability (CNVD-2021-103656)

2021-10-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.002 Low

EPSS

Percentile

59.8%

ZZCMS is a content management system (CMS) from the Zzcms team in China.ZZCMS version 2019 is vulnerable to a SQL injection vulnerability that originates from a missing validation of external input SQL statements in the dlid parameter on the application’s /dl/dl_print.php page. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.002 Low

EPSS

Percentile

59.8%

Related for CNVD-2021-103656