SQL Injection Vulnerability in zzcms by cby234
CVE-2019-12357
7.2HIGH
What is CVE-2019-12357?
A vulnerability in zzcms 2019 allows authenticated admin users to perform SQL injection attacks via the id parameter in the /admin/deluser.php file. Successful exploitation may enable an attacker to execute unauthorized SQL commands, potentially compromising the integrity of the database and accessing sensitive information.