First published: Thu May 13 2021(Updated: )
Insecure permissions issue in zzcms 201910 via the reset any user password in /one/getpassword.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zzcms Zzcms | =201910 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this zzcms issue is CVE-2020-21342.
The severity level of CVE-2020-21342 is high.
CVE-2020-21342 affects zzcms by allowing an insecure permissions issue through the reset of any user password in /one/getpassword.php.
CVE-2020-21342 affects version 201910 of zzcms.
Yes, a fix for CVE-2020-21342 is available. Please refer to the provided reference link for more information.