First published: Tue Sep 04 2018(Updated: )
An issue was discovered in SeaCMS 6.61. adm1n/admin_reslib.php has SSRF via the url parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Seacms Seacms | =6.61 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-16444 is critical with a CVSS score of 9.1.
The affected software for CVE-2018-16444 is SeaCMS version 6.61.
CVE-2018-16444 is a Server-Side Request Forgery (SSRF) vulnerability in the adm1n/admin_reslib.php file.
The SSRF vulnerability in CVE-2018-16444 can be exploited by manipulating the 'url' parameter in the adm1n/admin_reslib.php file.
The fix for CVE-2018-16444 is currently not available. It is recommended to update to a newer version of SeaCMS if one becomes available.