Vulnerability index

Browse CVEs

101 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Zzcms HIGH 7.2
CVE-2025-14837

A vulnerability has been found in ZZCMS 2025. Affected by this issue is the function stripfxg of the file /admin/siteconfig.php of the component Back…

No fix yet
Fix from $1,950 2025-12-18
Zzcms HIGH 8.8
CVE-2025-13171

A vulnerability was identified in ZZCMS 2023. This impacts an unknown function of the file /admin/wangkan_list.php. Such manipulation of the argument…

No fix yet
Fix from $1,950 2025-11-14
Zzcms MEDIUM 6.1
CVE-2025-1949

A vulnerability, which was classified as problematic, has been found in ZZCMS 2025. This issue affects some unknown processing of the file /3/ucenter…

No fix yet
Fix from $1,600 2025-03-04
Zzcms CRITICAL 9.8
CVE-2025-22957

A SQL injection vulnerability exists in the front-end of the website in ZZCMS <= 2023, which can be exploited without any authentication. This vulner…

Fix: after 2023
Fix from $2,300 2025-01-31
Zzcms CRITICAL 9.8
CVE-2025-0565

A vulnerability was found in ZZCMS 2023. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php. …

No fix yet
Fix from $2,300 2025-01-19
Zzcms CRITICAL 9.8
CVE-2024-52724

ZZCMS 2023 was discovered to contain a SQL injection vulnerability in /q/show.php.

No fix yet
Fix from $2,300 2024-12-02
Zzcms HIGH 7.2
CVE-2024-11242

A vulnerability was found in ZZCMS 2023. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/ad_li…

No fix yet
Fix from $1,950 2024-11-15
Zzcms CRITICAL 9.8
CVE-2024-10293

A vulnerability was found in ZZCMS 2023. It has been classified as critical. Affected is the function Ebak_SetGotoPak of the file 3/Ebbak5.1/upload/c…

Mitigation only
Fix from $2,300 2024-10-23
Zzcms CRITICAL 9.8
CVE-2024-10291

A vulnerability has been found in ZZCMS 2023 and classified as critical. This vulnerability affects the function Ebak_DoExecSQL/Ebak_DotranExecutSQL …

Mitigation only
Fix from $2,300 2024-10-23
Zzcms CRITICAL 9.8
CVE-2024-10292

A vulnerability was found in ZZCMS 2023 and classified as critical. This issue affects some unknown processing of the file 3/Ebak5.1/upload/ChangeTab…

Mitigation only
Fix from $2,300 2024-10-23
Zzcms HIGH 7.5
CVE-2024-10290

A vulnerability, which was classified as problematic, was found in ZZCMS 2023. This affects an unknown part of the file 3/qq-connect2.0/API/com/inc.p…

Mitigation only
Fix from $1,950 2024-10-23
Zzcms HIGH 8.8
CVE-2024-44817

SQL Injection vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via the id parameter in the adv2.php …

Fix: after 2023
Fix from $1,950 2024-09-04
Zzcms MEDIUM 5.4
CVE-2024-44818

Cross Site Scripting vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via the HTTP_Referer header of…

Fix: after 2023
Fix from $1,600 2024-09-04
Zzcms MEDIUM 5.3
CVE-2024-44821

ZZCMS 2023 contains a vulnerability in the captcha reuse logic located in /inc/function.php. The checkyzm function does not properly refresh the capt…

Fix: after 2023
Fix from $1,600 2024-09-04
Zzcms MEDIUM 6.1
CVE-2024-44819

Cross Site Scripting vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via a crafted script to the pa…

Fix: after 2023
Fix from $1,600 2024-09-04
Zzcms MEDIUM 6.1
CVE-2024-44820

A sensitive information disclosure vulnerability exists in ZZCMS v.2023 and before within the eginfo.php file located at /3/E_bak5.1/upload/. When ac…

Fix: after 2023
Fix from $1,600 2024-09-04
Zzcms HIGH 7.5
CVE-2024-7926

A vulnerability classified as critical has been found in ZZCMS 2023. Affected is an unknown function of the file /admin/about_edit.php?action=modify.…

No fix yet
Fix from $1,950 2024-08-19
Zzcms HIGH 7.5
CVE-2024-7927

A vulnerability classified as critical was found in ZZCMS 2023. Affected by this vulnerability is an unknown functionality of the file /admin/class.p…

No fix yet
Fix from $1,950 2024-08-19
Zzcms HIGH 7.5
CVE-2024-7924

A vulnerability was found in ZZCMS 2023. It has been declared as critical. This vulnerability affects unknown code of the file /I/list.php. The manip…

No fix yet
Fix from $1,950 2024-08-19
Zzcms HIGH 7.5
CVE-2024-7925

A vulnerability was found in ZZCMS 2023. It has been rated as problematic. This issue affects some unknown processing of the file 3/E_bak5.1/upload/e…

No fix yet
Fix from $1,950 2024-08-19
Zzcms MEDIUM 5.4
CVE-2024-43006

A stored cross-site scripting (XSS) vulnerability exists in ZZCMS2023 in the ask/show.php file at line 21. An attacker can exploit this vulnerability…

Mitigation only
Fix from $1,600 2024-08-16
Zzcms CRITICAL 9.8
CVE-2023-50104

ZZCMS 2023 has a file upload vulnerability in 3/E_bak5.1/upload/index.php, allowing attackers to exploit this loophole to gain server privileges and …

No fix yet
Fix from $2,300 2023-12-29
Zzcms CRITICAL 9.8
CVE-2023-42398

An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ueditor component in controller.…

No fix yet
Fix from $2,300 2023-09-15
Zzcms HIGH 8.8
CVE-2023-36162

Cross Site Request Forgery vulnerability in ZZCMS v.2023 and earlier allows a remote attacker to gain privileges via the add function in adminlist.ph…

No fix yet
Fix from $1,950 2023-07-03
Zzcms MEDIUM 5.4
CVE-2022-44361

An issue was discovered in ZZCMS 2022. There is a cross-site scripting (XSS) vulnerability in admin/ad_list.php.

No fix yet
Fix from $1,600 2022-12-07
Zzcms HIGH 7.2
CVE-2022-40446

ZZCMS 2022 was discovered to contain a SQL injection vulnerability via the component /admin/sendmailto.php?tomail=&groupid=.

No fix yet
Fix from $1,950 2022-09-22
Zzcms HIGH 7.2
CVE-2022-40447

ZZCMS 2022 was discovered to contain a SQL injection vulnerability via the keyword parameter at /admin/baojia_list.php.

No fix yet
Fix from $1,950 2022-09-22
Zzcms MEDIUM 5.3
CVE-2022-40443

An absolute path traversal vulnerability in ZZCMS 2022 allows attackers to obtain sensitive information via a crafted GET request sent to /one/sitein…

No fix yet
Fix from $1,600 2022-09-22
Zzcms MEDIUM 5.3
CVE-2022-40444

ZZCMS 2022 was discovered to contain a full path disclosure vulnerability via the page /admin/index.PHP? _server.

No fix yet
Fix from $1,600 2022-09-22
Zzcms HIGH 8.8
CVE-2019-12352

An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /dl/dl_sendmail.php (when the attacker has dls_print authority) via …

No fix yet
Fix from $1,950 2022-06-17