Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zzcms zzcms 2019 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2019-1010152
zzcms 8.3 and previous versions is affected by: File Delete to Code Execution. The impact is: getshell. The component is: user/manage.php line 31-80.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010148
zzcms version 8.3 and previous versions is affected by: SQL Injection. The impact is: zzcms File Delete to Code Execution.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010150
zzcms 8.3 and previous versions is affected by: File Delete to Code Execution. The impact is: getshell. The component is: /user/zssave.php.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010153
zzcms 8.3 and previous versions is affected by: SQL Injection. The impact is: sql inject. The component is: zs/subzs.php.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010151
zzcms zzmcms 8.3 and previous versions is affected by: File Delete to getshell. The impact is: getshell. The component is: /user/ppsave.php.
Zzcms Zzmcms
5.4
CVSSv3
CVE-2019-9078
zzcms 2019 has XSS via an arbitrary user/ask.php?do=modify parameter because inc/stopsqlin.php does not block a mixed-case string such as sCrIpT.
Zzcms Zzcms 2019
7.5
CVSSv3
CVE-2019-8411
admin/dl_data.php in zzcms 2018 (2018-10-19) allows remote malicious users to delete arbitrary files via action=del&filename=../ directory traversal.
Zzcms Zzcms 2018
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3