CVE-2025-1949 - ZZCMS PHP SELF Cross Site Scripting Vulnerability

CVE ID : CVE-2025-1949 Published : March 4, 2025, 7:15 p.m. | 2 hours, 44 minutes ago Description : A vulnerability, which was classified as problematic, has been found in ZZCMS 2025. This issue affects some unknown processing of the file /3/ucenter_api/code/register_nodb.php of the component URL Handler. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Severity: 4.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Mär 4, 2025 - 23:01
 0  0
CVE-2025-1949 - ZZCMS PHP SELF Cross Site Scripting Vulnerability
CVE ID : CVE-2025-1949
Published : March 4, 2025, 7:15 p.m. | 2 hours, 44 minutes ago
Description : A vulnerability, which was classified as problematic, has been found in ZZCMS 2025. This issue affects some unknown processing of the file /3/ucenter_api/code/register_nodb.php of the component URL Handler. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...