CVE-2026-79423: Security vulnerability
Published Sep 4, 2026
·Updated
An authenticated remote code execution (RCE) vulnerability in the adminconfig.php component of seacms v13.6 allows attackers to execute arbitrary code via a crafted POST request.
Affected Software
0 affected components
Event History
Sep 4, 2026
CVE Published
via NVD·09:17 PM
Data Sourced
via NVD·09:17 PM
Description
Frequently Asked Questions
1
What level of access does an attacker need?
The attacker must be authenticated and able to send a crafted POST request remotely. The provided information does not identify any specific required role or privilege level.
2
How can I determine whether my deployment is potentially affected?
Check whether the deployment uses seacms v13.6 and includes the admin_config.php component. The provided data does not specify affected configurations, indicators of compromise, or a workaround.