CVE-2025-25799: Medium severity SEACMS SEACMS vulnerability
Published Feb 26, 2025
·Updated
SeaCMS 13.3 was discovered to contain an arbitrary file read vulnerability in the filegetcontents function at adminsafe.php.
Affected Software
2 affected components
SEACMS SEACMS
SEACMS SEACMS=13.3
Event History
Feb 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25799?
CVE-2025-25799 is classified as a high-severity vulnerability due to its potential for arbitrary file reading.
2
How do I fix CVE-2025-25799?
To fix CVE-2025-25799, ensure you update SeaCMS to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2025-25799?
CVE-2025-25799 affects SeaCMS version 13.3 and potentially earlier versions.
4
What does CVE-2025-25799 allow attackers to do?
CVE-2025-25799 allows attackers to read arbitrary files on the server, which can lead to sensitive information exposure.
5
Is there a workaround for CVE-2025-25799?
A potential workaround for CVE-2025-25799 is to restrict file access permissions for the affected files until an update can be applied.