Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-7gq9-p94f-g5v9: ThinkAdmin arbitrary file upload vulnerability

An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to execute arbitrary code via a crafted Zip file.

ghsa
#vulnerability#git

ThinkAdmin arbitrary file upload vulnerability

High severity GitHub Reviewed Published Dec 4, 2023 to the GitHub Advisory Database • Updated Dec 8, 2023

Related news

CVE-2023-48966: CVE/ThinkAdmin directory traversal+file upload getshell.md at main · 1dreamGN/CVE

An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to execute arbitrary code via a crafted Zip file.