Back to search

CVE-2026-97871

HIGH
7.3NVD

A vulnerability has been found in Zhonglun CloudPos up to 3.0.1.76. This issue affects the function OpenLocalBrowser of the file ZlPos/ZlPos/Bizlogic/JSBridge.cs of the component JSBridge. Such manipulation of the argument url leads to code injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Share:

CVSS v3.1 Score

7.3
/ 10.0
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Information

Published
25 sept. 2026
Updated
25 sept. 2026
Status
Received
Source
cna@vuldb.com

Weaknesses (CWE)

CWE-74CWE-94

Similar CVEs

Other vulnerabilities of type CWE-74

Loading…

Monitor your products

Get automatic alerts for every new CVE affecting your equipment.

Enable monitoring