PT-2024-35763 · Seecms · Seecms

·

CVE-2024-53502

·

Published

2024-12-03

·

Updated

2024-12-04

CVSS v3.1

3.8

Low

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Seecms version 4.8
Description A SQL injection issue was discovered in the SEMCMS SeoAndTag.php page. This issue allows for potential SQL injection attacks.
Recommendations For Seecms version 4.8, consider restricting access to the SEMCMS SeoAndTag.php page until a patch is available. As a temporary workaround, avoid using any user-input parameters in this page to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-53502

Affected Products

Seecms