header-logo
Suggest Exploit
vendor:
SeoPanel
by:
Kr0ff
9.8
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: SeoPanel
Affected Version From: 4.6.0
Affected Version To: 4.6.0
Patch Exists: YES
Related CWE: N/A
CPE: a:seopanel:seopanel:4.6.0
Metasploit: N/A
Other Scripts: N/A
Platforms Tested: Ubuntu 20.04
2021

SEO Panel 4.6.0 – Remote Code Execution (2)

SeoPanel 4.6.0 is vulnerable to Remote Code Execution via authenticated file upload. An attacker can exploit this vulnerability by logging in with valid credentials, uploading a malicious file and executing it.

Mitigation:

Upgrade to version 4.7.0 or later
Source

Exploit-DB raw data: