Vulnerability Details CVE-2024-44819
Cross Site Scripting vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via a crafted script to the pagename parameter of the admin/del.php component.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 15.2%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2024-44819
-
cpe:2.3:a:zzcms:zzcms:2.0
-
cpe:2.3:a:zzcms:zzcms:2018
-
cpe:2.3:a:zzcms:zzcms:2019
-
cpe:2.3:a:zzcms:zzcms:2020
-
cpe:2.3:a:zzcms:zzcms:2021
-
cpe:2.3:a:zzcms:zzcms:2022
-
cpe:2.3:a:zzcms:zzcms:2023
-
cpe:2.3:a:zzcms:zzcms:3.0
-
cpe:2.3:a:zzcms:zzcms:4.0
-
cpe:2.3:a:zzcms:zzcms:4.1
-
cpe:2.3:a:zzcms:zzcms:4.2
-
cpe:2.3:a:zzcms:zzcms:4.3
-
cpe:2.3:a:zzcms:zzcms:5.0
-
cpe:2.3:a:zzcms:zzcms:5.1
-
cpe:2.3:a:zzcms:zzcms:5.2
-
cpe:2.3:a:zzcms:zzcms:6.0
-
cpe:2.3:a:zzcms:zzcms:6.1
-
cpe:2.3:a:zzcms:zzcms:7.0
-
cpe:2.3:a:zzcms:zzcms:7.1
-
cpe:2.3:a:zzcms:zzcms:7.2
-
cpe:2.3:a:zzcms:zzcms:8.0
-
cpe:2.3:a:zzcms:zzcms:8.1
-
cpe:2.3:a:zzcms:zzcms:8.2
-
cpe:2.3:a:zzcms:zzcms:8.3
-
cpe:2.3:a:zzcms:zzcms:8.3.