Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A SQL injection vulnerability exists in CSZ-CMS <=1.3.0 in the Form Builder view functionality. The vulnerability is located in the field parameter of the form viewing feature, allowing authenticated administrators to execute arbitrary SQL queries.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CSZ-CMS 安全漏洞
Vulnerability Description
CSZ-CMS是CSZ-CMS开源的一套基于PHP的开源内容管理系统(CMS)。 CSZ-CMS 1.3.0及之前版本存在安全漏洞,该漏洞源于表单查看功能中的field参数未经验证,可能导致SQL注入攻击。
CVSS Information
N/A
Vulnerability Type
N/A