Security Advisory

CVE-2017-17561

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-12-12 18:00:00
Last updated 2024-09-16 18:09:04
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SeaCMS 6.56 allows remote authenticated administrators to execute arbitrary PHP code via a crafted token field to admin/admin_ping.php, which interacts with data/admin/ping.php.