| |
Vulnerability CVE-2024-42598
Published: 2024-08-20
| Description: |
SeaCMS 13.0 has a remote code execution vulnerability. The reason for this vulnerability is that although admin_editplayer.php imposes restrictions on edited files, attackers can still bypass these restrictions and write code, allowing authenticated attackers to exploit the vulnerability to execute arbitrary commands and gain system privileges. |
References: |
https://gitee.com/fushuling/cve/blob/master/SeaCMS%20V13%20admin_editplayer.php%20code%20injection.md
|
|
|
closedb();
?>
Copyright 2026, cxsecurity.com
|
|
|