Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-14910
HistoryAug 03, 2018 - 7:29 p.m.

Cross site request forgery (csrf)

2018-08-0319:29:00
PRIOn knowledge base
www.prio-n.com
3

8.9 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

70.9%

SeaCMS v6.61 allows Remote Code execution by placing PHP code in an allowed IP address (aka ip) to /admin/admin_ip.php (aka /adm1n/admin_ip.php). The code is executed by visiting adm1n/admin_ip.php or data/admin/ip.php. This can also be exploited through CSRF.

CPENameOperatorVersion
seacmseq6.61

8.9 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

70.9%

Related for PRION:CVE-2018-14910