Vulnerability index

Browse CVEs

108 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Seacms CRITICAL 9.1
CVE-2024-31611

SeaCMS 12.9 has a file deletion vulnerability via admin_template.php.

No fix yet
Fix from $2,300 2024-06-10
Seacms HIGH 8.8
CVE-2024-30565

An issue was discovered in SeaCMS version 12.9, allows remote attackers to execute arbitrary code via admin notify.php.

No fix yet
Fix from $1,950 2024-04-04
Seacms CRITICAL 9.8
CVE-2024-29275

SQL injection vulnerability in SeaCMS version 12.9, allows remote unauthenticated attackers to execute arbitrary code and obtain sensitive informatio…

No fix yet
Fix from $2,300 2024-03-22
Seacms HIGH 8.8
CVE-2023-46987

SeaCMS v12.9 was discovered to contain a remote code execution (RCE) vulnerability via the component /augap/adminip.php.

Mitigation only
Fix from $1,950 2023-12-28
Seacms MEDIUM 5.4
CVE-2023-50470

A cross-site scripting (XSS) vulnerability in the component admin_ Video.php of SeaCMS v12.8 allows attackers to execute arbitrary web scripts or HTM…

No fix yet
Fix from $1,600 2023-12-28
Seacms CRITICAL 9.8
CVE-2023-46010

An issue in SeaCMS v.12.9 allows an attacker to execute arbitrary commands via the admin_safe.php component.

Fix: after 12.9
Fix from $2,300 2023-10-25
Seacms HIGH 8.8
CVE-2023-44846

An issue in SeaCMS v.12.8 allows an attacker to execute arbitrary code via the admin_ notify.php component.

Fix: after 12.8
Fix from $1,950 2023-10-10
Seacms HIGH 8.1
CVE-2023-44848

An issue in SeaCMS v.12.8 allows an attacker to execute arbitrary code via the admin_template.php component.

Fix: after 12.8
Fix from $1,950 2023-10-10
Seacms HIGH 7.2
CVE-2023-44847

An issue in SeaCMS v.12.8 allows an attacker to execute arbitrary code via the admin_ Weixin.php component.

Fix: after 12.8
Fix from $1,950 2023-10-10
Seacms CRITICAL 9.8
CVE-2023-44169

SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_notify.php.

No fix yet
Fix from $2,300 2023-09-27
Seacms CRITICAL 9.8
CVE-2023-44170

SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ping.php.

No fix yet
Fix from $2,300 2023-09-27
Seacms CRITICAL 9.8
CVE-2023-44171

SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_smtp.php.

No fix yet
Fix from $2,300 2023-09-27
Seacms CRITICAL 9.8
CVE-2023-44172

SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_weixin.php.

No fix yet
Fix from $2,300 2023-09-27
Seacms CRITICAL 9.8
CVE-2023-43216

SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ip.php.

No fix yet
Fix from $2,300 2023-09-27
Seacms CRITICAL 9.8
CVE-2023-43222

SeaCMS v12.8 has an arbitrary code writing vulnerability in the /jxz7g2/admin_ping.php file.

Fix: 12.8+
Fix from $2,300 2023-09-27
Seacms HIGH 8.8
CVE-2023-43278

A Cross-Site Request Forgery (CSRF) in admin_manager.php of Seacms up to v12.8 allows attackers to arbitrarily add an admin account.

Fix: after 12.8
Fix from $1,950 2023-09-25
Seacms MEDIUM 5.4
CVE-2023-37124

A stored cross-site scripting (XSS) vulnerability in the Site Setup module of SEACMS v12.1 allows attackers to execute arbitrary web scripts or HTML …

No fix yet
Fix from $1,600 2023-07-06
Seacms MEDIUM 5.4
CVE-2023-37125

A stored cross-site scripting (XSS) vulnerability in the Management Custom label module of SEACMS v12.1 allows attackers to execute arbitrary web scr…

No fix yet
Fix from $1,600 2023-07-06
Seacms MEDIUM 6.5
CVE-2023-2926

A vulnerability was found in SeaCMS 11.6 and classified as problematic. This issue affects some unknown processing of the file member.php of the comp…

No fix yet
Fix from $1,600 2023-05-27
Seacms CRITICAL 9.8
CVE-2023-0960

A vulnerability was found in SeaCMS 11.6 and classified as problematic. Affected by this issue is some unknown functionality of the file /data/config…

No fix yet
Fix from $2,300 2023-02-22
Seacms HIGH 7.2
CVE-2022-48093

Seacms v12.7 was discovered to contain a remote code execution (RCE) vulnerability via the ip parameter at admin_ ip.php.

No fix yet
Fix from $1,950 2023-02-01
Seacms CRITICAL 9.8
CVE-2021-39426

An issue was discovered in /Upload/admin/admin_notify.php in Seacms 11.4 allows attackers to execute arbitrary php code via the notify1 parameter whe…

No fix yet
Fix from $2,300 2022-12-15
Seacms CRITICAL 9.8
CVE-2022-43256

SeaCms before v12.6 was discovered to contain a SQL injection vulnerability via the component /js/player/dmplayer/dmku/index.php.

Fix: 12.6+
Fix from $2,300 2022-11-16
Seacms HIGH 7.2
CVE-2022-28076

Seacms v11.6 was discovered to contain a remote command execution (RCE) vulnerability via the Mail Server Settings.

No fix yet
Fix from $1,950 2022-05-04
Seacms CRITICAL 9.8
CVE-2022-27336EPSS 21%

Seacms v11.6 was discovered to contain a remote code execution (RCE) vulnerability via the component /admin/weixin.php.

No fix yet
Fix from $2,300 2022-04-27
Seacms CRITICAL 9.8
CVE-2022-23878

seacms V11.5 is affected by an arbitrary code execution vulnerability in admin_config.php.

No fix yet
Fix from $2,300 2022-03-02
Seacms CRITICAL 9.8
CVE-2021-37358

SQL Injection in SEACMS v210530 (2021-05-30) allows remote attackers to execute arbitrary code via the component "admin_ajax.php?action=checkrepeat&v…

No fix yet
Fix from $2,300 2021-08-18
Seacms MEDIUM 6.1
CVE-2021-29313

Cross Site Scripting (XSS) vulnerability exists in SeaCMS 12.6 via the (1) v_company and (2) v_tvs parameters in /admin_video.php,

No fix yet
Fix from $1,600 2021-08-17
Seacms MEDIUM 6.5
CVE-2020-28846

Cross Site Request Forgery (CSRF) vulnerability exists in SeaCMS 10.7 in admin_manager.php, which could let a malicious user add an admin account.

No fix yet
Fix from $1,600 2021-08-17
Seacms MEDIUM 6.1
CVE-2020-26642

A cross-site scripting (XSS) vulnerability has been discovered in the login page of SeaCMS version 11 which allows an attacker to inject arbitrary we…

No fix yet
Fix from $1,600 2021-05-28