CVE-2014-4194
SQL injection vulnerability in zero_transact_article.php in ZeroCMS 1.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter in a Submit Comment action.
Ver en NVDSeveridad
N/A
EPSS
Probabilidad de explotación (próx. 30 días): 0.0087 (0.9%)
Percentil: 75.3%
EPSS: 2026-05-06
Afecta
aas9:zerocmsDescripción técnica
SQL injection vulnerability in zero_transact_article.php in ZeroCMS 1.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter in a Submit Comment action.
Publicada: 9/7/2014, 14:55:03
Última modificación: 6/5/2026, 22:30:45