ZVING ZCMS(泽元网站内容管理系统)是中国泽元软件(ZVING)公司的一款企业级网站内容管理软件。 ZVING ZCMS 3.6.0版本存在代码注入漏洞,该漏洞源于组件Create Article Page中参数Title处理不当,可能导致跨站脚本攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | ZCMS | 3.6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-7729 | 3.5 LOW | Scada-LTS usersProfiles.shtm cross site scripting |
| CVE-2025-7728 | 3.5 LOW | Scada-LTS users.shtm cross site scripting |
| CVE-2023-41566 | Landray OA EKP 安全漏洞 | |
| CVE-2023-47356 | Anheng Mingyu Security Gateway 安全漏洞 | |
| CVE-2025-50240 | Nbcio-Boot 安全漏洞 | |
| CVE-2025-51497 | AdGuard for Safari 安全漏洞 | |
| CVE-2025-51630 | TOTOLINK N350RT 安全漏洞 | |
| CVE-2025-46102 | Beakon Learning Management System Sharable Content Object Reference Model 安全漏洞 | |
| CVE-2025-53867 | Island Lake WebBatch 安全漏洞 | |
| CVE-2025-53964 | goldendict 安全漏洞 | |
| CVE-2025-52046 | TOTOLINK A3300R 安全漏洞 | |
| CVE-2025-47189 | Netwrix Directory Manager 安全漏洞 | |
| CVE-2024-32323 | Highsun OA 安全漏洞 |
No comments yet