Description
SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to recharge members indefinitely.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-52687 | SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to recharge members indefinitely. |
References
History
Fri, 28 Mar 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Seacms
Seacms seacms |
|
| CPEs | cpe:2.3:a:seacms:seacms:13.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Seacms
Seacms seacms |
Tue, 07 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-281 | |
| Metrics |
cvssV3_1
|
Mon, 06 Jan 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to recharge members indefinitely. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-07T20:17:30.876Z
Reserved: 2024-12-06T00:00:00.000Z
Link: CVE-2024-54879
Updated: 2025-01-07T20:06:13.839Z
Status : Analyzed
Published: 2025-01-06T18:15:21.880
Modified: 2025-03-28T17:12:17.790
Link: CVE-2024-54879
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD