SQL Injection Vulnerability in ZZCMS by zzCMS
CVE-2025-22957
9.8CRITICAL
What is CVE-2025-22957?
A SQL injection vulnerability has been identified in the front-end of ZZCMS, versions up to 2023. This flaw allows attackers to exploit the system without requiring user authentication, potentially leading to unauthorized access to the database. Consequently, sensitive information stored within the database could be compromised. It is crucial for users of ZZCMS to evaluate their current security measures and implement necessary updates to mitigate this risk.