Page 2 of 56 results (0.003 seconds)

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

24 Oct 2023 — An issue in SeaCMS v.12.9 allows an attacker to execute arbitrary commands via the admin_safe.php component. Un problema en SeaCMS v.12.9 permite a un atacante ejecutar comandos arbitrarios a través del componente admin_safe.php. • http://seacms.com • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 8.3EPSS: 0%CPEs: 1EXPL: 1

10 Oct 2023 — An issue in SeaCMS v.12.8 allows an attacker to execute arbitrary code via the admin_ Weixin.php component. Un problema en SeaCMS v.12.8 permite a un atacante ejecutar código arbitrario a través del componente admin_Weixin.php. • https://blog.csdn.net/2301_79997870/article/details/133661890?spm=1001.2014.3001.5502 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 8.5EPSS: 0%CPEs: 1EXPL: 0

10 Oct 2023 — An issue in SeaCMS v.12.8 allows an attacker to execute arbitrary code via the admin_template.php component. Un problema en SeaCMS v.12.8 permite a un atacante ejecutar código arbitrario a través del componente admin_template.php. • https://blog.csdn.net/2301_79997870/article/details/133661890?spm=1001.2014.3001.5502 •

CVSS: 9.0EPSS: 0%CPEs: 1EXPL: 1

10 Oct 2023 — An issue in SeaCMS v.12.8 allows an attacker to execute arbitrary code via the admin_ notify.php component. Un problema en SeaCMS v.12.8 permite a un atacante ejecutar código arbitrario a través del componente admin_notify.php. • https://blog.csdn.net/2301_79997870/article/details/133365547?spm=1001.2014.3001.5501 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

26 Sep 2023 — SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_smtp.php. Se descubrió que SeaCMS V12.9 contenía una vulnerabilidad de escritura de archivos arbitraria a través del componente admin_smtp.php. • https://github.com/H3ppo/vulnerabilities/blob/main/SeaCMS%20V12.9%20Arbitrary%20file%20write%20vulnerability.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

26 Sep 2023 — SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ip.php. Se descubrió que SeaCMS V12.9 contenía una vulnerabilidad de escritura de archivos arbitraria a través del componente admin_ip.php. • https://github.com/H3ppo/vulnerabilities/blob/main/SeaCMS%20V12.9%20Arbitrary%20file%20write%20vulnerability.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

26 Sep 2023 — SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ping.php. Se descubrió que SeaCMS V12.9 contenía una vulnerabilidad de escritura de archivos arbitraria a través del componente admin_ping.php. • https://github.com/H3ppo/vulnerabilities/blob/main/SeaCMS%20V12.9%20Arbitrary%20file%20write%20vulnerability.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

26 Sep 2023 — SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_weixin.php. Se descubrió que SeaCMS V12.9 contenía una vulnerabilidad de escritura de archivos arbitraria a través del componente admin_weixin.php. • https://github.com/H3ppo/vulnerabilities/blob/main/SeaCMS%20V12.9%20Arbitrary%20file%20write%20vulnerability.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

26 Sep 2023 — SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_notify.php. Se descubrió que SeaCMS V12.9 contenía una vulnerabilidad de escritura de archivos arbitraria a través del componente admin_notify.php. • https://github.com/H3ppo/vulnerabilities/blob/main/SeaCMS%20V12.9%20Arbitrary%20file%20write%20vulnerability.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 1

26 Sep 2023 — SeaCMS v12.8 has an arbitrary code writing vulnerability in the /jxz7g2/admin_ping.php file. SeaCMS v12.8 tiene una vulnerabilidad de escritura de código arbitrario en el archivo /jxz7g2/admin_ping.php. • https://blog.csdn.net/weixin_51394168/article/details/132817842 • CWE-94: Improper Control of Generation of Code ('Code Injection') •