zbzcms v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php/ajax.php.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/wu610777031/My_CMSHunter