
AvaterXXX/ZZCMS
Releases0
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| — | 5 MEDIUM | ||
dl/dl_sendmail.php in zzcms 8.3 has SQL Injection via the sql parameter. | |||
| — | 3.5 LOW | ||
zzcms 8.3 has stored XSS related to the content variable in user/manage.php and zt/show.php. | |||
| — | 6.8 MEDIUM | ||
zzcms 8.3 has CSRF via the admin/adminadd.php?action=add URI. | |||