← Back to CVE List

CVE-2024-40518

Published: 2024-07-12T16:15Z
Last Modified: 2024-11-21T09:31Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
SeaCMS 12.9 has a remote code execution vulnerability. The vulnerability is caused by admin_weixin.php directly splicing and writing the user input data into weixin.php without processing it, which allows authenticated attackers to exploit the vulnerability to execute arbitrary commands and obtain system permissions. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt