Security Advisory
CVE-2021-45347
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An Incorrect Access Control vulnerability exists in zzcms 8.2, which lets a malicious user bypass authentication by changing the user name in the cookie to use any password.