CVE-2025-4257 | SeaCMS 13.2 /admin_pay.php cstatus cross site scripting (Issue 26)
A vulnerability was found in SeaCMS 13.2 and classified as problematic. This impacts an unknown function of the file /admin_pay.php. Executing manipulation of the argument cstatus can lead to cross site scripting.
This vulnerability is registered as CVE-2025-4257. It is possible to launch the attack remotely. Furthermore, an exploit is available.