Перейти к содержимому
Noroxi

Записи Seacms

114 опубликованных записей вендора seacms.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
15
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

114 записей
  • CVE-2022-27336
    45В плане

    Seacms v11.6 was discovered to contain a remote code execution (RCE) vulnerability via the component /admin/weixin.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 21 %

    seacms · seacms27 апр. 2022 г.

  • CVE-2024-29275
    40В плане

    SQL injection vulnerability in SeaCMS version 12.9, allows remote unauthenticated attackers to execute arbitrary code and obtain sensitive i

    КритическаяCVSS 9,8Proof of conceptEPSS 5 %

    seacms · seacms22 мар. 2024 г.

  • CVE-2021-37358
    40В плане

    SQL Injection in SEACMS v210530 (2021-05-30) allows remote attackers to execute arbitrary code via the component "admin_ajax.php?action=chec

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    seacms · seacms18 авг. 2021 г.

  • CVE-2022-23878
    40В плане

    seacms V11.5 is affected by an arbitrary code execution vulnerability in admin_config.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    seacms · seacms2 мар. 2022 г.

  • CVE-2020-21378
    40В плане

    SQL injection vulnerability in SeaCMS 10.1 (2020.02.08) via the id parameter in an edit action to admin_members_group.php.

    КритическаяCVSS 9,8Proof of conceptEPSS 2 %

    seacms · seacms21 дек. 2020 г.

  • CVE-2023-44171
    39Наблюдать

    SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_smtp.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms27 сент. 2023 г.

  • CVE-2023-44170
    39Наблюдать

    SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ping.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms27 сент. 2023 г.

  • CVE-2023-44169
    39Наблюдать

    SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_notify.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms27 сент. 2023 г.

  • CVE-2023-43216
    39Наблюдать

    SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ip.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms27 сент. 2023 г.

  • CVE-2023-44172
    39Наблюдать

    SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_weixin.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms27 сент. 2023 г.

  • CVE-2018-16822
    39Наблюдать

    SeaCMS 6.64 allows SQL Injection via the upload/admin/admin_video.php order parameter.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms21 сент. 2018 г.

  • CVE-2023-46010
    39Наблюдать

    An issue in SeaCMS v.12.9 allows an attacker to execute arbitrary commands via the admin_safe.php component.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms25 окт. 2023 г.

  • CVE-2024-55461
    39Наблюдать

    SeaCMS <=13.0 is vulnerable to command execution in phome.php via the function Ebak_RepPathFiletext().

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms18 дек. 2024 г.

  • CVE-2018-16445
    39Наблюдать

    An issue was discovered in SeaCMS through 6.61.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms4 сент. 2018 г.

  • CVE-2024-39028
    39Наблюдать

    An issue was discovered in SeaCMS <=12.9 which allows remote attackers to execute arbitrary code via admin_ping.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms5 июл. 2024 г.

  • CVE-2024-46640
    39Наблюдать

    SeaCMS 13.2 has a remote code execution vulnerability located in the file sql.class.chp.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms20 сент. 2024 г.

  • CVE-2023-0960
    39Наблюдать

    SeaCMS Picture Management config.ftp.php deserialization

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms22 февр. 2023 г.

  • CVE-2025-44071
    39Наблюдать

    SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component phomebak.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms5 мая 2025 г.

  • CVE-2023-43222
    39Наблюдать

    SeaCMS v12.8 has an arbitrary code writing vulnerability in the /jxz7g2/admin_ping.php file.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms27 сент. 2023 г.

  • CVE-2022-43256
    39Наблюдать

    SeaCms before v12.6 was discovered to contain a SQL injection vulnerability via the component /js/player/dmplayer/dmku/index.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms16 нояб. 2022 г.

  • CVE-2021-39426
    39Наблюдать

    An issue was discovered in /Upload/admin/admin_notify.php in Seacms 11.4 allows attackers to execute arbitrary php code via the notify1 para

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms15 дек. 2022 г.

  • CVE-2025-22974
    39Наблюдать

    SQL Injection vulnerability in SeaCMS v.13.2 and before allows a remote attacker to execute arbitrary code via the DoTranExecSql parameter i

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms24 февр. 2025 г.

  • CVE-2024-44921
    39Наблюдать

    SeaCMS v12.9 was discovered to contain a SQL injection vulnerability via the id parameter at /dmplayer/dmku/index.php?ac=del.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms3 сент. 2024 г.

  • CVE-2024-44721
    39Наблюдать

    SeaCMS v13.1 was discovered to a Server-Side Request Forgery (SSRF) via the url parameter at /admin_reslib.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms9 сент. 2024 г.

  • CVE-2025-25513
    39Наблюдать

    Seacms <=13.3 is vulnerable to SQL Injection in admin_members.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    seacms · seacms24 февр. 2025 г.