First published: Mon Sep 17 2018(Updated: )
zzcms 8.3 contains a SQL Injection vulnerability in /user/check.php via a Client-Ip HTTP header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ZZCMS | =8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-17136 has been assigned a medium severity rating due to its potential to allow SQL injection attacks on zzcms 8.3.
To fix CVE-2018-17136, it is recommended to upgrade to a patched version of zzcms that addresses the SQL Injection vulnerability.
CVE-2018-17136 specifically affects zzcms version 8.3.
CVE-2018-17136 is a SQL Injection vulnerability that can be exploited via the Client-Ip HTTP header.
By exploiting CVE-2018-17136, an attacker can manipulate database queries, potentially leading to unauthorized data access or data modification.