Cross Site Request Forgery vulnerability in ZZCMS v.2023 and earlier allows a remote attacker to gain privileges via the add function in adminlist.php.
References
Link | Resource |
---|---|
http://www.zzcms.net/about/download.html | Product |
https://github.com/779789571/zzcms/blob/main/README.md | |
https://github.com/forget-code/zzcms/issues/6 | Exploit Issue Tracking |
Configurations
History
No history.
Information
Published : 2023-07-03 21:15
Updated : 2023-08-01 18:15
NVD link : CVE-2023-36162
Mitre link : CVE-2023-36162
CVE.ORG link : CVE-2023-36162
JSON object : View
Products Affected
zzcms
- zzcms
CWE
CWE-352
Cross-Site Request Forgery (CSRF)