PT-2023-28733 · Seacms · Seacms

Published

2023-09-26

·

Updated

2024-09-25

·

CVE-2023-43216

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SeaCMS version 12.9
Description The issue is related to an arbitrary file write vulnerability. This vulnerability is present in the component admin ip.php.
Recommendations For SeaCMS version 12.9, consider disabling access to the admin ip.php component until a patch is available. Restricting write permissions to sensitive files and directories can also help minimize the risk of exploitation.

Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2023-43216

Affected Products

Seacms