PT-2024-28340 · Seacms · Seacms

Lem0N817

·

Published

2024-07-16

·

Updated

2024-08-21

·

CVE-2024-39036

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SeaCMS version 12.9
Description The issue concerns an Arbitrary File Read vulnerability. It is exploited via the admin safe.php file.
Recommendations For SeaCMS version 12.9, consider restricting access to the admin safe.php file until a patch is available.

Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2024-39036

Affected Products

Seacms