CVE-2025-25796: Command Injection
Published Feb 26, 2025
·Updated
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admintemplate.php.
Affected Software
2 affected components
SEACMS SEACMS
SEACMS SEACMS=13.3
Event History
Feb 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25796?
CVE-2025-25796 has been classified as a critical remote code execution vulnerability.
2
How do I fix CVE-2025-25796?
To fix CVE-2025-25796, update to the latest version of SeaCMS that addresses the vulnerability.
3
What component is affected by CVE-2025-25796?
CVE-2025-25796 affects the admin_template.php component of SeaCMS v13.3.
4
Can CVE-2025-25796 be exploited remotely?
Yes, CVE-2025-25796 allows for remote code execution, making it exploitable from outside the system.
5
What systems are vulnerable to CVE-2025-25796?
CVE-2025-25796 impacts SeaCMS version 13.3.