An Incorrect Access Control vulnerability exists in zzcms 8.2, which lets a malicious user bypass authentication by changing the user name in the cookie to use any password.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-45347.json"