CVE-2019-12353: Zzcms

High severity, CVSS 7.2. EPSS: 0.9% chance of exploitation in the next 30 days.

An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/dl_sendmail.php (when the attacker has admin authority) via the id parameter.

Affected products

  • Zzcms Zzcms: version 2019 only

Published 2022-06-17. Last modified 2026-06-17.