Beveiligingsadvies

CVE-2024-46640

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-09-20 00:00:00
Laatst bijgewerkt 2024-09-23 15:30:29
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

SeaCMS 13.2 has a remote code execution vulnerability located in the file sql.class.chp. Although the system has a check function, the check function is not executed during execution, allowing remote code execution by writing to the file through the MySQL slow query method.