Vulnerability CVE-2022-47745


Published: 2023-01-19

Description:
ZenTao 16.4 to 18.0.beta1 is vulnerable to SQL injection. After logging in with any user, you can complete SQL injection by constructing a special request and sending it to function importNotice.

 References:
https://github.com/l3s10n/ZenTaoPMS_SqlInjection
https://github.com/easysoft/zentaopms/issues/106

Copyright 2026, cxsecurity.com

 

Back to Top