ZenTao 16.4 to 18.0.beta1 is vulnerable to SQL injection. After logging in with any user, you can complete SQL injection by constructing a special request and sending it to function importNotice.
| Software | From | Fixed in |
|---|---|---|
| easycorp / zentao | 18.0-beta1 | 18.0-beta1.x |
| easycorp / zentao | 16.4 | 18.0 |