Loading HuntDB...

seacms

1 Product 26 CVEs

CVE Severity Distribution (All Time)

Critical
7
High
9
Medium
3
Low
1

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 23 CVEs

Recent CVEs

View all
CVE-2024-50808 HIGH 7 months, 1 week ago

SeaCms 13.1 is vulnerable to code injection in the notification module of the member message notification module in the backend user module, due to u…

CVE-2024-46640 CRITICAL 8 months, 3 weeks ago

SeaCMS 13.2 has a remote code execution vulnerability located in the file sql.class.chp. Although the system has a check function, the check function…

CVE-2024-44721 CRITICAL 9 months, 1 week ago

SeaCMS v13.1 was discovered to a Server-Side Request Forgery (SSRF) via the url parameter at /admin_reslib.php.

CVE-2024-44720 HIGH 9 months, 1 week ago

SeaCMS v13.1 was discovered to an arbitrary file read vulnerability via the component admin_safe.php.

CVE-2024-44921 CRITICAL 9 months, 1 week ago

SeaCMS v12.9 was discovered to contain a SQL injection vulnerability via the id parameter at /dmplayer/dmku/index.php?ac=del.

CVE-2024-44920 MEDIUM 9 months, 1 week ago

A cross-site scripting (XSS) vulnerability in the component admin_collect_news.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts …

CVE-2024-44918 LOW 9 months, 2 weeks ago

A cross-site scripting (XSS) vulnerability in the component admin_datarelate.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or…

CVE-2024-44916 HIGH 9 months, 2 weeks ago

Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/admin/ip.php f…

CVE-2024-44919 MEDIUM 9 months, 2 weeks ago

A cross-site scripting (XSS) vulnerability in the component admin_ads.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML v…

CVE-2024-41444 CRITICAL 9 months, 3 weeks ago

SeaCMS v12.9 has a SQL injection vulnerability in the key parameter of /js/player/dmplayer/dmku/index.php?ac=so.