Zcms ProjectCVEs & Vulnerabilities
4 CVEs affecting Zcms Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
4 CVEs→ All vendors
Most Affected Products
zcms 4
CVE-2022-28522MEDIUM
ZCMS v20170206 was discovered to contain a stored cross-site scripting (XSS) vulnerability via index.php?m=home&c=message&a=add.
27 Apr 2022
5.4
CVSS
CVE-2022-28521CRITICAL
ZCMS v20170206 was discovered to contain a file inclusion vulnerability via index.php?m=home&c=home&a=sp_set_config.
27 Apr 2022
9.8
CVSS
CVE-2015-7347MEDIUMpoc
Cross-site scripting (XSS) vulnerability in ZCMS JavaServer Pages Content Management System 1.1.
20 Sep 2017
4.8
CVSS
CVE-2015-7346CRITICALpoc
SQL injection vulnerability in ZCMS 1.1.
8 Jun 2017
9.8
CVSS
← PrevPage 1 / 1Next →