Headline
GHSA-7gq9-p94f-g5v9: ThinkAdmin arbitrary file upload vulnerability
An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to execute arbitrary code via a crafted Zip file.
ThinkAdmin arbitrary file upload vulnerability
High severity GitHub Reviewed Published Dec 4, 2023 to the GitHub Advisory Database • Updated Dec 8, 2023
Related news
CVE-2023-48966: CVE/ThinkAdmin directory traversal+file upload getshell.md at main · 1dreamGN/CVE
An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to execute arbitrary code via a crafted Zip file.