Vulnerabilities > Cszcms > CSZ CMS > High

DATE CVE VULNERABILITY TITLE RISK
2023-03-23 CVE-2020-19786 Unrestricted Upload of File with Dangerous Type vulnerability in Cszcms CSZ CMS 1.2.2
File upload vulnerability in CSKaza CSZ CMS v.1.2.2 fixed in v1.2.4 allows attacker to execute aritrary commands and code via crafted PHP file.
network
low complexity
cszcms CWE-434
8.8
2019-02-07 CVE-2019-7566 Cross-Site Request Forgery (CSRF) vulnerability in Cszcms CSZ CMS 1.1.8
CSZ CMS 1.1.8 has CSRF via admin/users/new/add.
network
low complexity
cszcms CWE-352
8.8