Security Advisory
CVE-2019-9041
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An issue was discovered in ZZZCMS zzzphp V1.6.1. In the inc/zzz_template.php file, the parserIfLabel() functions filtering is not strict, resulting in PHP code execution, as demonstrated by the if:assert substring.