CVE-2024-55461: Seacms
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
SeaCMS <=13.0 is vulnerable to command execution in phome.php via the function Ebak_RepPathFiletext().
Affected products
- Seacms Seacms: up to and including 13.0
Published 2024-12-18. Last modified 2026-06-17.