Vulnerability Details CVE-2024-44817
SQL Injection vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via the id parameter in the adv2.php component.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.5%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2024-44817
-
cpe:2.3:a:zzcms:zzcms:2.0
-
cpe:2.3:a:zzcms:zzcms:2018
-
cpe:2.3:a:zzcms:zzcms:2019
-
cpe:2.3:a:zzcms:zzcms:2020
-
cpe:2.3:a:zzcms:zzcms:2021
-
cpe:2.3:a:zzcms:zzcms:2022
-
cpe:2.3:a:zzcms:zzcms:2023
-
cpe:2.3:a:zzcms:zzcms:3.0
-
cpe:2.3:a:zzcms:zzcms:4.0
-
cpe:2.3:a:zzcms:zzcms:4.1
-
cpe:2.3:a:zzcms:zzcms:4.2
-
cpe:2.3:a:zzcms:zzcms:4.3
-
cpe:2.3:a:zzcms:zzcms:5.0
-
cpe:2.3:a:zzcms:zzcms:5.1
-
cpe:2.3:a:zzcms:zzcms:5.2
-
cpe:2.3:a:zzcms:zzcms:6.0
-
cpe:2.3:a:zzcms:zzcms:6.1
-
cpe:2.3:a:zzcms:zzcms:7.0
-
cpe:2.3:a:zzcms:zzcms:7.1
-
cpe:2.3:a:zzcms:zzcms:7.2
-
cpe:2.3:a:zzcms:zzcms:8.0
-
cpe:2.3:a:zzcms:zzcms:8.1
-
cpe:2.3:a:zzcms:zzcms:8.2
-
cpe:2.3:a:zzcms:zzcms:8.3
-
cpe:2.3:a:zzcms:zzcms:8.3.