CVE-2022-27128

Publication date

2022-04-10 20:24:08

Family

mitre

State

PUBLISHED

Description

An incorrect access control issue at /admin/run_ajax.php in zbzcms v1.0 allows attackers to arbitrarily add administrator accounts.