Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zzcms zzcms 2019 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2019-1010153
zzcms 8.3 and previous versions is affected by: SQL Injection. The impact is: sql inject. The component is: zs/subzs.php.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010149
zzcms version 8.3 and previous versions is affected by: File Delete to Code Execution. The impact is: zzcms File Delete to Code Execution. The component is: user/licence_save.php.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010148
zzcms version 8.3 and previous versions is affected by: SQL Injection. The impact is: zzcms File Delete to Code Execution.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010150
zzcms 8.3 and previous versions is affected by: File Delete to Code Execution. The impact is: getshell. The component is: /user/zssave.php.
Zzcms Zzcms
9.8
CVSSv3
CVE-2019-1010151
zzcms zzmcms 8.3 and previous versions is affected by: File Delete to getshell. The impact is: getshell. The component is: /user/ppsave.php.
Zzcms Zzmcms
5.4
CVSSv3
CVE-2019-9078
zzcms 2019 has XSS via an arbitrary user/ask.php?do=modify parameter because inc/stopsqlin.php does not block a mixed-case string such as sCrIpT.
Zzcms Zzcms 2019
7.5
CVSSv3
CVE-2019-8411
admin/dl_data.php in zzcms 2018 (2018-10-19) allows remote malicious users to delete arbitrary files via action=del&filename=../ directory traversal.
Zzcms Zzcms 2018
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3