ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2022-28521
+1 in the same advisory: …28522
ZCMS v20170206 was discovered to contain a file inclusion vulnerability via index.php?m=home&c=home&a=sp_set_config.

ZCMS v20170206 was discovered to contain a file inclusion vulnerability via index.php?m=home&c=home&a=sp_set_config.

NVD description · AI analysis pending
9.8
group max
2% PoC ×2
  • zcms project zcms
CVE-2020-19705
thinkphp-zcms as of 20190715 allows SQL injection via index.php?m=home&c=message&a=add.

thinkphp-zcms as of 20190715 allows SQL injection via index.php?m=home&c=message&a=add.

NVD description · AI analysis pending
9.8<1% PoC
  • thinkphp-zcms project thinkphp-zcms