CVE-2024-44916: Command Injection
Published Aug 30, 2024
·Updated
Vulnerability in adminip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/admin/ip.php file and could result in arbitrary command execution.
Affected Software
2 affected components
SEACMS SEACMS
SEACMS SEACMS=13.1
Event History
Aug 30, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-44916?
CVE-2024-44916 is rated as a critical vulnerability due to its potential for arbitrary command execution.
2
How do I fix CVE-2024-44916?
To fix CVE-2024-44916, update Seacms to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2024-44916?
CVE-2024-44916 affects users of Seacms version 13.1.
4
What type of vulnerability is CVE-2024-44916?
CVE-2024-44916 is a file inclusion vulnerability that can lead to arbitrary command execution.
5
What impact does CVE-2024-44916 have on systems?
The impact of CVE-2024-44916 may allow attackers to execute commands on the server, leading to potential compromise.