← Back

CVE-2024-50808

nvd nist
Published: Nov 8, 2024Modified: Mar 28, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

SeaCms 13.1 is vulnerable to code injection in the notification module of the member message notification module in the backend user module, due to unsafe handling of the "notify" variable in admin_notify.php.

Affected (1)

Products: Seacms: Seacms
1 product
Seacms
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 13.1

References (2)

Source: cve@mitre.org
Product
Source: cve@mitre.org
ExploitThird Party Advisory

Timeline

No history available yet.