← back
CVE-2023-2926

SeaCMS Picture Upload member.php denial of service

CVSS 5.4 MEDIUMEPSS 0.9%CWE-404
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.4EPSS 0.9%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
27 May 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability was found in SeaCMS 11.6 and classified as problematic. This issue affects some unknown processing of the file member.php of the component Picture Upload Handler. The manipulation of the argument oldpic leads to denial of service. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-230081 was assigned to this vulnerability.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Affected products
n/a · SeaCMS

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →