CVE-2024-7163: SeaCMS index.php cross site scripting
A vulnerability, which was classified as problematic, was found in SeaCMS 12.9. This affects an unknown part of the file /js/player/dmplayer/player/index.php. The manipulation of the argument color/vid/url leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-272577 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7163?
CVE-2024-7163 has been classified as problematic.
How does CVE-2024-7163 affect SeaCMS 12.9?
CVE-2024-7163 affects SeaCMS 12.9 by allowing cross site scripting through the manipulation of certain arguments.
What component of SeaCMS is impacted by CVE-2024-7163?
CVE-2024-7163 impacts the file /js/player/dmplayer/player/index.php in SeaCMS 12.9.
Can CVE-2024-7163 be exploited remotely?
Yes, CVE-2024-7163 can be initiated through a remote attack.
What type of vulnerability is CVE-2024-7163?
CVE-2024-7163 is a cross site scripting vulnerability.