SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admincommentnews.php.
SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admintopic.php.
SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component adminmanager.php.
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component phomebak.php. This vulnerability allows attackers to execute arbitrary code via a crafted request.
SeaCMS v13.3 has a SQL injection vulnerability in the component admintempvideo.php.