CVE-2023-36162

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
03/07/2023
Last modified:
01/08/2023

Description

Cross Site Request Forgery vulnerability in ZZCMS v.2023 and earlier allows a remote attacker to gain privileges via the add function in adminlist.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zzcms:zzcms:2023:*:*:*:*:*:*:*