PT-2023-29139 · Seacms · Seacms

Published

2023-09-26

·

Updated

2024-09-25

·

CVE-2023-44169

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SeaCMS version 12.9
Description The issue is related to an arbitrary file write vulnerability. This vulnerability is present in the component admin notify.php.
Recommendations For SeaCMS version 12.9, consider disabling access to the admin notify.php component until a patch is available. Restrict write permissions to sensitive files and directories to minimize the risk of exploitation.

Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2023-44169

Affected Products

Seacms