Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f7xm-gx23-3gq8

Опубликовано: 03 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

An information disclosure vulnerability has been discovered in SeaCMS 13.1. The vulnerability exists in the admin_safe.php component located in the /btcoan/ directory. This security flaw allows authenticated administrators to scan and download not only the application’s source code but also potentially any file accessible on the server’s root directory.

An information disclosure vulnerability has been discovered in SeaCMS 13.1. The vulnerability exists in the admin_safe.php component located in the /btcoan/ directory. This security flaw allows authenticated administrators to scan and download not only the application’s source code but also potentially any file accessible on the server’s root directory.

EPSS

Процентиль: 21%
0.00066
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.9
nvd
4 месяца назад

An information disclosure vulnerability has been discovered in SeaCMS 13.1. The vulnerability exists in the admin_safe.php component located in the /btcoan/ directory. This security flaw allows authenticated administrators to scan and download not only the application’s source code but also potentially any file accessible on the server’s root directory.

EPSS

Процентиль: 21%
0.00066
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-200