Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-44820

EPSS 0.92% · P76
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2024-44820

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A sensitive information disclosure vulnerability exists in ZZCMS v.2023 and before within the eginfo.php file located at /3/E_bak5.1/upload/. When accessed with the query parameter phome=ShowPHPInfo, the application executes the phpinfo() function, which exposes detailed information about the PHP environment, including server configuration, loaded modules, and environment variables.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
ZZCMS 跨站脚本漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
ZZCMS是中国ZZCMS团队的一套内容管理系统(CMS)。 ZZCMS v.2023版本及之前版本存在跨站脚本漏洞,该漏洞源于phpinfo函数会泄露有关 PHP 环境的详细信息,包括服务器配置、已加载的模块和环境变量。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2024-44820

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-44820

登录查看更多情报信息。

Same Patch Batch · n/a · 2024-09-04 · 16 CVEs total

CVE-2024-45506HAProxy 安全漏洞
CVE-2024-44383WAYOS FBM-291W 安全漏洞
CVE-2024-44859Tenda FH1201 安全漏洞
CVE-2024-44817ZZCMS 安全漏洞
CVE-2024-44808API-ATTACK-SYSTEM 安全漏洞
CVE-2024-44821ZZCMS 安全漏洞
CVE-2024-44400D-Link DI-8400 安全漏洞
CVE-2024-44818ZZCMS 安全漏洞
CVE-2024-44819ZZCMS 安全漏洞
CVE-2024-45174za-internet C-MOR Video Surveillance 安全漏洞
CVE-2024-45692Webmin和Virtualmin 安全漏洞
CVE-2024-45172za-internet C-MOR Video Surveillance 安全漏洞
CVE-2024-45170za-internet C-MOR Video Surveillance 安全漏洞
CVE-2024-45177za-internet C-MOR Video Surveillance 安全漏洞
CVE-2024-42642Micron Crucial MX500 Series Solid State Drives 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2024-44820

No comments yet


Leave a comment