VYPR
Critical severity9.8NVD Advisory· Published Jan 27, 2022· Updated Jun 17, 2026

CVE-2021-46377

CVE-2021-46377

Description

There is a front-end sql injection vulnerability in cszcms 1.2.9 via cszcms/controllers/Member.php#viewUser

Affected products

4
  • cszcms/cszcmsdescription
  • Range: =1.2.9
  • CSZ CMS/cszcmsllm-create2 versions
    =1.2.9+ 1 more
    • (no CPE)range: =1.2.9
    • cpe:2.3:a:cskaza:cszcms:1.2.9:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.