CVE-2025-29647: SQL Injection
Published Apr 3, 2025
·Updated
SeaCMS v13.3 has a SQL injection vulnerability in the component admintempvideo.php.
Affected Software
2 affected components
SEACMS SEACMS
SEACMS SEACMS=13.3
Event History
Apr 3, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-29647?
CVE-2025-29647 has been classified as a high severity SQL injection vulnerability.
2
How do I fix CVE-2025-29647?
To fix CVE-2025-29647, sanitize and parameterize all SQL queries in the admin_tempvideo.php component.
3
What impact does CVE-2025-29647 have on my SeaCMS v13.3 installation?
CVE-2025-29647 can allow attackers to execute arbitrary SQL commands, potentially compromising the database.
4
Which versions of SeaCMS are affected by CVE-2025-29647?
CVE-2025-29647 specifically affects SeaCMS version 13.3.
5
Is CVE-2025-29647 being actively exploited?
Yes, there are reports of active exploitation attempts targeting the SQL injection vulnerability in CVE-2025-29647.