Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

小冷爱学习!

#14795of 53,635
18.2Total CVSS
Vulnerabilities · 2
Critical
2
PT-2025-3082
9.1
2025-01-06
Seacms · Seacms · CVE-2024-54879
**Name of the Vulnerable Software and Affected Versions** SeaCMS version 13.1 **Description** The issue is related to incorrect access control, allowing an attacker to exploit a logic flaw and enable any user to recharge members indefinitely. **Recommendations** For SeaCMS version 13.1, consider restricting access to member recharge functionality until a patch is available. As a temporary workaround, review and limit user permissions to prevent unauthorized member recharges. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2025-3083
9.1
2025-01-06
Seacms · Seacms · CVE-2024-54880
**Name of the Vulnerable Software and Affected Versions** SeaCMS version 13.1 **Description** The issue is related to Incorrect Access Control, where a logic flaw can be exploited by an attacker to allow any user to register accounts in bulk. This flaw enables attackers to create multiple accounts at once. **Recommendations** For SeaCMS version 13.1, as a temporary workaround, consider restricting the account registration process to prevent bulk registrations until a patch is available.