CVE-2024-55461: Seacms

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

SeaCMS <=13.0 is vulnerable to command execution in phome.php via the function Ebak_RepPathFiletext().

Affected products

  • Seacms Seacms: up to and including 13.0

Published 2024-12-18. Last modified 2026-06-17.