First published: Fri Nov 15 2024(Updated: )
A vulnerability was found in ZZCMS 2023. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/ad_list.php?action=pass of the component Keyword Filtering. The manipulation of the argument keyword leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
ZZCMS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11242 has been rated as critical due to the potential for SQL injection attacks.
To fix CVE-2024-11242, it is recommended to sanitize user inputs in the keyword filtering functionality to prevent SQL injection.
CVE-2024-11242 affects the keyword filtering functionality located in /admin/ad_list.php of ZZCMS 2023.
CVE-2024-11242 is classified as an SQL injection vulnerability.
Yes, due to its critical nature, CVE-2024-11242 can lead to unauthorized access and potential data breaches.