Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-47737

CSZ CMS 1.2.7 contains an HTML injection vulnerability that allows authenticated users to insert malicious hyperlinks in message titles. Attackers can craft POST requests to the member messaging system with HTML-based links to potentially conduct phishing or social engineering attacks.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.3%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2021-47737
  • Cszcms » Csz Cms » Version: 1.2.7
    cpe:2.3:a:cszcms:csz_cms:1.2.7


Contact Us

Shodan ® - All rights reserved