zzcms vulnerabilities
CVEs whose affected-version data names the zzcms package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2020-19961High· 7.5A SQL injection vulnerability has been discovered in zz cms version 2019 which allows attackers to retrieve sensitive data via the component subzs.php.
A SQL injection vulnerability has been discovered in zz cms version 2019 which allows attackers to retrieve sensitive data via the component subzs.php.
▾ Twilightzzcms · zzcmsEPSS 1.7%via NVD
CVE-2020-23630High· 8.8A blind SQL injection vulnerability exists in zzcms ver201910 based on time (cookie injection).
A blind SQL injection vulnerability exists in zzcms ver201910 based on time (cookie injection).
▾ Twilightzzcms · zzcmsEPSS 1.2%via NVD