← Back to CVE List
CVE-2019-12356
An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /user/dls_download.php (when the attacker has dls_download authority) via the id parameter.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt