CVE-2019-16722: Critical severity zzzcms vulnerability
Published Sep 23, 2019
·Updated
ZZZCMS zzzphp v1.7.2 has an insufficient protection mechanism against PHP Code Execution, because passthru bypasses an strireplace operation.
Affected Software
1 affected component
ZZZCMS zzzphp=1.7.2
Event History
Sep 23, 2019
CVE Published
via MITRE·01:35 PM
Data Sourced
via MITRE·01:35 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2019-16722.
2
What is the severity level of CVE-2019-16722?
The severity level of CVE-2019-16722 is critical (9.8).
3
What is the affected software and version of CVE-2019-16722?
The affected software is ZZZCMS zzzphp version 1.7.2.
4
What is the description of CVE-2019-16722?
CVE-2019-16722 is a vulnerability in ZZZCMS zzzphp version 1.7.2 that allows for PHP Code Execution due to an insufficient protection mechanism.
5
Is there a reference to more information about CVE-2019-16722?
Yes, you can find more information about CVE-2019-16722 at http://www.iwantacve.cn/index.php/archives/348/