Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

zzcms — Vulnerabilities & Security Advisories 20

All 20 CVE vulnerabilities found in zzcms, with AI-generated Chinese analysis, references, and POCs.

Vendor: zzcms

CVE IDTitleCVSSSeverityPublished
CVE-2025-14837 ZZCMS Backend Website Settings siteconfig.php stripfxg code injection CWE-94 4.7 Medium2025-12-17
CVE-2025-14836 ZZCMS User Data Storage user_save.php cleartext storage in file CWE-313 2.7 Low2025-12-17
CVE-2025-13171 ZZCMS wangkan_list.php sql injection CWE-89 6.3 Medium2025-11-14
CVE-2025-1949 ZZCMS URL register_nodb.php cross site scripting CWE-79 4.3 Medium2025-03-04
CVE-2025-0565 ZZCMS index.php sql injection CWE-89 7.3 High2025-01-19
CVE-2024-11242 ZZCMS Keyword Filtering ad_list.php sql injection CWE-89 4.7 Medium2024-11-15
CVE-2024-11130 ZZCMS msg.php cross site scripting CWE-79 2.4 Low2024-11-12
CVE-2024-10293 ZZCMS functions.php Ebak_SetGotoPak unrestricted upload CWE-434 6.3 Medium2024-10-23
CVE-2024-10292 ZZCMS ChangeTable.php unrestricted upload CWE-434 6.3 Medium2024-10-23
CVE-2024-10291 ZZCMS phome.php Ebak_DotranExecutSQL sql injection CWE-89 6.3 Medium2024-10-23
CVE-2024-10290 ZZCMS inc.php information disclosure CWE-200 5.3 Medium2024-10-23
CVE-2024-7927 ZZCMS class.php path traversal CWE-22 7.3 High2024-08-19
CVE-2024-7926 ZZCMS about_edit.php path traversal CWE-22 7.3 High2024-08-19
CVE-2024-7925 ZZCMS eginfo.php information disclosure CWE-200 4.3 Medium2024-08-19
CVE-2024-7924 ZZCMS list.php path traversal CWE-22 5.3 Medium2024-08-19
CVE-2019-1010153 ZZCMS SQL注入漏洞 9.8 -2019-07-23
CVE-2019-1010152 ZZCMS 输入验证错误漏洞 9.8 -2019-07-23
CVE-2019-1010150 ZZCMS 输入验证错误漏洞 9.8 -2019-07-23
CVE-2019-1010149 ZZCMS 输入验证错误漏洞 9.8 -2019-07-23
CVE-2019-1010148 ZZCMS SQL注入漏洞 9.8 -2019-07-23

All 20 known CVE vulnerabilities affecting zzcms with full Chinese analysis, references, and POCs where available.