Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2021-46437

Disclosure Date: April 08, 2022 (last updated February 23, 2025)
An issue was discovered in ZZCMS 2021. There is a cross-site scripting (XSS) vulnerability in ad_manage.php.
Attacker Value
Unknown

CVE-2021-46436

Disclosure Date: April 08, 2022 (last updated February 23, 2025)
An issue was discovered in ZZCMS 2021. There is a SQL injection vulnerability in ad_manage.php.
Attacker Value
Unknown

CVE-2021-45286

Disclosure Date: February 09, 2022 (last updated February 23, 2025)
Directory Traversal vulnerability exists in ZZCMS 2021 via the skin parameter in 1) index.php, 2) bottom.php, and 3) top_index.php.
Attacker Value
Unknown

CVE-2021-42945

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
A SQL Injection vulnerability exists in ZZCMS 2021 via the askbigclassid parameter in /admin/ask.php.
Attacker Value
Unknown

CVE-2021-40282

Disclosure Date: December 09, 2021 (last updated February 23, 2025)
An SQL Injection vulnerability exists in zzcms 8.2, 8.3, 2020, abd 2021 in dl/dl_download.php. when registering ordinary users.
Attacker Value
Unknown

CVE-2021-40281

Disclosure Date: December 09, 2021 (last updated February 23, 2025)
An SQL Injection vulnerability exists in zzcms 8.2, 8.3, 2020, and 2021 in dl/dl_print.php when registering ordinary users.
Attacker Value
Unknown

CVE-2021-40280

Disclosure Date: December 09, 2021 (last updated February 23, 2025)
An SQL Injection vulnerablitly exits in zzcms 8.2, 8.3, 2020, and 2021 via the id parameter in admin/dl_sendmail.php.
Attacker Value
Unknown

CVE-2021-40279

Disclosure Date: December 09, 2021 (last updated February 23, 2025)
An SQL Injection vulnerability exists in zzcms 8.2, 8.3, 2020, and 2021 via the id parameter in admin/bad.php.