VYPR
Unrated severityNVD Advisory· Published Aug 19, 2024· Updated Sep 3, 2024

ZZCMS eginfo.php information disclosure

CVE-2024-7925

Description

A vulnerability was found in ZZCMS 2023. It has been rated as problematic. This issue affects some unknown processing of the file 3/E_bak5.1/upload/eginfo.php. The manipulation of the argument phome with the input ShowPHPInfo leads to information disclosure. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Affected products

2
  • Zzcms/Zzcmscpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: 2023

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.