SQL Injection Vulnerability in zzcms by cby234
CVE-2019-12355
8.8HIGH
What is CVE-2019-12355?
In zzcms 2019, a SQL injection vulnerability exists in the /user/dls_print.php script which can be exploited by an attacker with dls_print authority by manipulating the id parameter. This flaw can allow unauthorized access to sensitive data, potentially leading to further exploitation of the system and compromise of user information.