SeaCMS是海洋CMS(SeaCMS)公司的一套使用PHP编写的免费、开源的网站内容管理系统。该系统主要被设计用来管理视频点播资源。 SeaCMS 12.9版本存在跨站脚本漏洞,该漏洞源于在文件/js/player/dmplayer/player/index.php中对参数color/vid/url的操纵会容易受到跨站脚本攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | SeaCMS | 12.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-42053 | 7.8 HIGH | Splashtop Streamer 安全漏洞 |
| CVE-2024-42052 | 7.8 HIGH | Splashtop Streamer 安全漏洞 |
| CVE-2024-42051 | 7.8 HIGH | Splashtop Streamer 安全漏洞 |
| CVE-2024-42050 | 7.0 HIGH | Splashtop Streamer 安全漏洞 |
| CVE-2024-7161 | 4.3 MEDIUM | SeaCMS Password Change cross-site request forgery |
| CVE-2024-7162 | 3.5 LOW | SeaCMS cross site scripting |
| CVE-2024-42054 | Cervantes 安全漏洞 | |
| CVE-2024-42055 | Cervantes 安全漏洞 | |
| CVE-2024-42049 | TightVNC 安全漏洞 |
No comments yet