RULE(RULE ID:333620)

Rule General Information
Release Date: 2021-06-03
Rule Name: ZZZCMS Remote Code Execution Vulnerability (CVE-2022-23881)
Severity:
CVE ID:
Rule Protection Details
Description: ZZZCMS zzzphp v2.1.0 was discovered to contain a remote command execution (RCE) vulnerability via danger_key() at zzz_template.php.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: https://github.com/metaStor/Vuls/blob/main/zzzcms/zzzphp
https://cxsecurity.com/cveshow/CVE-2022-23881/
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.zzzcms.com/down/?list_19_1.html