CVE-2023-46987

SeaCMS v12.9 was discovered to contain a remote code execution (RCE) vulnerability via the component /augap/adminip.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:seacms:seacms:12.9:*:*:*:*:*:*:*

History

05 Jan 2024, 17:03

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
CWE CWE-94
References () http://seacms.com - () http://seacms.com - Product
References () https://blog.csdn.net/weixin_72610998/article/details/133420747?spm=1001.2014.3001.5501 - () https://blog.csdn.net/weixin_72610998/article/details/133420747?spm=1001.2014.3001.5501 - Exploit, Third Party Advisory
References () http://www.seacms.com/ - () http://www.seacms.com/ - Product
CPE cpe:2.3:a:seacms:seacms:12.9:*:*:*:*:*:*:*

28 Dec 2023, 19:05

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-28 15:15

Updated : 2024-02-05 00:22


NVD link : CVE-2023-46987

Mitre link : CVE-2023-46987

CVE.ORG link : CVE-2023-46987


JSON object : View

Products Affected

seacms

  • seacms
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')