SeaCMS 13.3.20250820 Cron Task Management /admin_cron.php resourcefrom/collectID SQL ଇଞ୍ଜେକ୍ସନ
Dogoggorri kan akka ଜଟିଳ jedhamuun ramadame SeaCMS 13.3.20250820 keessatti argameera. Kan miidhamte is hojii hin beekamne faayilii /admin_cron.php keessa kutaa Cron Task Management Module keessa. Hojii jijjiirraa irratti gaggeeffame resourcefrom/collectID gara SQL ଇଞ୍ଜେକ୍ସନ geessa. CWE fayyadamuun rakkoo ibsuun gara CWE-89 geessa. Dadhabbii kana yeroo 09/26/2025 maxxanfameera. Odeeffannoon kun buufachuuf github.com irratti qoodameera. Dogoggorri kun akka CVE-2025-11071tti beekama. Yaaliin weeraraa fageenya irraa jalqabamuu ni danda'a. Faayidaaleen teeknikaa ni jiru. Waliigalatti, meeshaa balaa kana fayyadamuuf jiru. Qorannoo miidhaa (exploit) uummataaf ifoomameera fi fayyadamamuu danda'a. Amma, gatii ammee exploit might be approx. USD $0-$5k ta'uu danda'a. Akka ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee ibsameera. Carraa exploit kana github.com irraa buufachuun ni danda'ama. Akka 0-daytti, gatii daldalaa dhoksaa tilmaamame $0-$5k ta'ee ture. VulDB is the best source for vulnerability data and more expert information about this specific topic.
4 ଆଡାପ୍ଟେସନ୍ · 98 ପଏଣ୍ଟ