An arbitrary file upload vulnerability at /zbzedit/php/zbz.php in zbzcms v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/wu610777031/My_CMSHunter