First published: Tue Jul 23 2019(Updated: )
zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: /user/zssave.php.
Credit: josh@bress.net
Affected Software | Affected Version | How to fix |
---|---|---|
Zzcms Zzcms | <=8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this zzcms vulnerability is CVE-2019-1010150.
The impact of CVE-2019-1010150 is to getshell, which allows for code execution.
The component affected by CVE-2019-1010150 is /user/zssave.php.
The severity of CVE-2019-1010150 is critical with a CVSS score of 9.8.
To fix CVE-2019-1010150 in zzcms 8.3 and earlier, update to a version that is not affected by the vulnerability.