Vulnerability index

Browse CVEs

83 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2020-36932 SeaCMS 11.1 contains a stored cross-site scripting vulnerability in the checkuser parameter of the admin settings page. Attackers can inject maliciou… Seacms No fix yet Fix from $1,6002026-01-25 HIGH 7.2 CVE-2025-11071 A security vulnerability has been detected in SeaCMS 13.3.20250820. Impacted is an unknown function of the file /admin_cron.php of the component Cron… Seacms No fix yet Fix from $1,9502025-09-27 MEDIUM 6.5 CVE-2024-40570 SQL Injection vulnerability in SeaCMS v.12.9 allows a remote attacker to obtain sensitive information via the admin_datarelate.php component. Seacms No fix yet Fix from $1,6002025-06-17 CRITICAL 9.8 CVE-2025-44073 SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admin_comment_news.php. Seacms No fix yet Fix from $2,3002025-05-06 CRITICAL 9.8 CVE-2025-44072 SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admin_manager.php. Seacms No fix yet Fix from $2,3002025-05-05 CRITICAL 9.8 CVE-2025-44074 SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admin_topic.php. Seacms No fix yet Fix from $2,3002025-05-05 CRITICAL 9.8 CVE-2025-44071 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component phomebak.php. This vulnerability allows attacker… Seacms No fix yet Fix from $2,3002025-05-05 MEDIUM 6.1 CVE-2025-4257 A vulnerability, which was classified as problematic, has been found in SeaCMS 13.2. This issue affects some unknown processing of the file /admin_pa… Seacms No fix yet Fix from $1,6002025-05-05 MEDIUM 5.4 CVE-2025-4256 A vulnerability classified as problematic was found in SeaCMS 13.2. This vulnerability affects unknown code of the file /admin_paylog.php. The manipu… Seacms No fix yet Fix from $1,6002025-05-05 CRITICAL 9.8 CVE-2025-29647 SeaCMS v13.3 has a SQL injection vulnerability in the component admin_tempvideo.php. Seacms No fix yet Fix from $2,3002025-04-03 MEDIUM 5.1 CVE-2025-25802 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_ip.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 5.1 CVE-2025-25813 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_files.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 6.0 CVE-2025-25799 SeaCMS 13.3 was discovered to contain an arbitrary file read vulnerability in the file_get_contents function at admin_safe.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 5.3 CVE-2025-25800 SeaCMS 13.3 was discovered to contain an arbitrary file read vulnerability in the file_get_contents function at admin_safe_file.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 5.1 CVE-2025-25793 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_notify.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 5.1 CVE-2025-25794 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_ping.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 5.1 CVE-2025-25796 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_template.php. Seacms No fix yet Fix from $1,6002025-02-26 MEDIUM 5.1 CVE-2025-25797 SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_smtp.php. Seacms No fix yet Fix from $1,6002025-02-26 CRITICAL 9.1 CVE-2024-54880 SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to register accounts in bulk. Seacms No fix yet Fix from $2,3002025-01-06 CRITICAL 9.1 CVE-2024-54879 SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to recharge members indefinite… Seacms No fix yet Fix from $2,3002025-01-06 HIGH 8.8 CVE-2024-50808 SeaCms 13.1 is vulnerable to code injection in the notification module of the member message notification module in the backend user module, due to u… Seacms No fix yet Fix from $1,9502024-11-08 CRITICAL 9.8 CVE-2024-46640 SeaCMS 13.2 has a remote code execution vulnerability located in the file sql.class.chp. Although the system has a check function, the check function… Seacms No fix yet Fix from $2,3002024-09-20 CRITICAL 9.8 CVE-2024-44721 SeaCMS v13.1 was discovered to a Server-Side Request Forgery (SSRF) via the url parameter at /admin_reslib.php. Seacms No fix yet Fix from $2,3002024-09-09 HIGH 7.5 CVE-2024-44720 SeaCMS v13.1 was discovered to an arbitrary file read vulnerability via the component admin_safe.php. Seacms No fix yet Fix from $1,9502024-09-09 CRITICAL 9.8 CVE-2024-44921 SeaCMS v12.9 was discovered to contain a SQL injection vulnerability via the id parameter at /dmplayer/dmku/index.php?ac=del. Seacms No fix yet Fix from $2,3002024-09-03 MEDIUM 6.1 CVE-2024-44920 A cross-site scripting (XSS) vulnerability in the component admin_collect_news.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts … Seacms No fix yet Fix from $1,6002024-09-03 MEDIUM 6.1 CVE-2024-44683 Seacms v13 is vulnerable to Cross Site Scripting (XSS) via admin-video.php. Seacms Mitigation only Fix from $1,6002024-08-30 HIGH 7.2 CVE-2024-44916 Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/admin/ip.php f… Seacms No fix yet Fix from $1,9502024-08-30 MEDIUM 5.4 CVE-2024-44919 A cross-site scripting (XSS) vulnerability in the component admin_ads.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML v… Seacms No fix yet Fix from $1,6002024-08-29 CRITICAL 9.8 CVE-2024-41444 SeaCMS v12.9 has a SQL injection vulnerability in the key parameter of /js/player/dmplayer/dmku/index.php?ac=so. Seacms Mitigation only Fix from $2,3002024-08-26