Seacms

Seacms

114 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.08%
  • Veröffentlicht 06.07.2023 15:15:16
  • Zuletzt bearbeitet 21.11.2024 08:11:03

A stored cross-site scripting (XSS) vulnerability in the Site Setup module of SEACMS v12.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

Exploit
  • EPSS 0.08%
  • Veröffentlicht 06.07.2023 15:15:16
  • Zuletzt bearbeitet 21.11.2024 08:11:03

A stored cross-site scripting (XSS) vulnerability in the Management Custom label module of SEACMS v12.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

Exploit
  • EPSS 0.07%
  • Veröffentlicht 27.05.2023 09:15:10
  • Zuletzt bearbeitet 21.11.2024 07:59:34

A vulnerability was found in SeaCMS 11.6 and classified as problematic. This issue affects some unknown processing of the file member.php of the component Picture Upload Handler. The manipulation of the argument oldpic leads to denial of service. The...

Exploit
  • EPSS 0.56%
  • Veröffentlicht 22.02.2023 18:15:10
  • Zuletzt bearbeitet 21.11.2024 07:38:11

A vulnerability was found in SeaCMS 11.6 and classified as problematic. Affected by this issue is some unknown functionality of the file /data/config.ftp.php of the component Picture Management. The manipulation leads to deserialization. The attack m...

Exploit
  • EPSS 3.03%
  • Veröffentlicht 01.02.2023 16:15:09
  • Zuletzt bearbeitet 27.03.2025 15:15:40

Seacms v12.7 was discovered to contain a remote code execution (RCE) vulnerability via the ip parameter at admin_ ip.php.

Exploit
  • EPSS 0.4%
  • Veröffentlicht 15.12.2022 19:15:15
  • Zuletzt bearbeitet 21.04.2025 19:15:16

An issue was discovered in /Upload/admin/admin_notify.php in Seacms 11.4 allows attackers to execute arbitrary php code via the notify1 parameter when the action parameter equals set.

Exploit
  • EPSS 0.25%
  • Veröffentlicht 16.11.2022 15:15:16
  • Zuletzt bearbeitet 30.04.2025 16:15:27

SeaCms before v12.6 was discovered to contain a SQL injection vulnerability via the component /js/player/dmplayer/dmku/index.php.

Exploit
  • EPSS 5.23%
  • Veröffentlicht 04.05.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 06:56:43

Seacms v11.6 was discovered to contain a remote command execution (RCE) vulnerability via the Mail Server Settings.

Exploit
  • EPSS 3.59%
  • Veröffentlicht 27.04.2022 16:15:11
  • Zuletzt bearbeitet 21.11.2024 06:55:36

Seacms v11.6 was discovered to contain a remote code execution (RCE) vulnerability via the component /admin/weixin.php.

Exploit
  • EPSS 0.43%
  • Veröffentlicht 02.03.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:49:24

seacms V11.5 is affected by an arbitrary code execution vulnerability in admin_config.php.