A blind SQL injection vulnerability exists in zzcms ver201910 based on time (cookie injection).
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-23630
Reference (s):
- http://zzcms.com
- https://github.com/Pandora1m2/
- https://github.com/Pandora1m2/zzcms201910/issues/1