A Cross-Site Request Forgery (CSRF) in dzzoffice 2.02.1SCUTF8 allows attackers to arbitrarily create user accounts and grant Administrator rights to regular users.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-43340.json"