Lucene search

K

Thinkphp Security Vulnerabilities

cve
cve

CVE-2022-25481

ThinkPHP Framework v5.0.24 was discovered to be configured without the PATHINFO parameter. This allows attackers to access all system environment parameters from index.php. NOTE: this is disputed by a third party because system environment exposure is an intended feature of the debugging...

7.5CVSS

7.4AI Score

0.013EPSS

2022-03-21 12:15 AM
124
cve
cve

CVE-2022-47945

ThinkPHP Framework before 6.0.14 allows local file inclusion via the lang parameter when the language pack feature is enabled (lang_switch_on=true). An unauthenticated and remote attacker can exploit this to execute arbitrary operating system commands, as demonstrated by including...

9.8CVSS

9.4AI Score

0.048EPSS

2022-12-23 09:15 PM
144
cve
cve

CVE-2022-45982

thinkphp 6.0.0~6.0.13 and 6.1.0~6.1.1 contains a deserialization vulnerability. This vulnerability allows attackers to execute arbitrary code via a crafted...

9.8CVSS

9.5AI Score

0.002EPSS

2023-02-08 09:15 PM
31
cve
cve

CVE-2022-44289

Thinkphp 5.1.41 and 5.0.24 has a code logic error which causes file upload...

8.8CVSS

8.8AI Score

0.001EPSS

2022-12-06 04:15 PM
69
cve
cve

CVE-2018-10225

thinkphp 3.1.3 has SQL Injection via the index.php s...

9.8CVSS

9.9AI Score

0.002EPSS

2022-10-03 04:22 PM
71
2
cve
cve

CVE-2018-18546

ThinkPHP 3.2.4 has SQL Injection via the order parameter because the Library/Think/Db/Driver.class.php parseOrder function mishandles the key...

9.8CVSS

9.9AI Score

0.002EPSS

2022-10-03 04:22 PM
23
cve
cve

CVE-2018-18530

ThinkPHP 5.1.25 has SQL Injection via the count parameter because the library/think/db/Query.php aggregate function mishandles the aggregate variable. NOTE: a backquote character is required in the attack...

9.8CVSS

9.9AI Score

0.002EPSS

2022-10-03 04:22 PM
22
cve
cve

CVE-2018-18529

ThinkPHP 3.2.4 has SQL Injection via the count parameter because the Library/Think/Db/Driver/Mysql.class.php parseKey function mishandles the key variable. NOTE: a backquote character is not required in the attack...

9.8CVSS

9.9AI Score

0.002EPSS

2022-10-03 04:22 PM
20
cve
cve

CVE-2022-38352

ThinkPHP v6.0.13 was discovered to contain a deserialization vulnerability via the component League\Flysystem\Cached\Storage\Psr6Cache. This vulnerability allows attackers to execute arbitrary code via a crafted...

9.8CVSS

9.7AI Score

0.002EPSS

2022-09-15 02:15 AM
51
4
cve
cve

CVE-2022-33107

ThinkPHP v6.0.12 was discovered to contain a deserialization vulnerability via the component vendor\league\flysystem-cached-adapter\src\Storage\AbstractCache.php. This vulnerability allows attackers to execute arbitrary code via a crafted...

9.8CVSS

9.6AI Score

0.002EPSS

2022-06-29 12:15 PM
74
4
cve
cve

CVE-2021-23592

The package topthink/framework before 6.0.12 are vulnerable to Deserialization of Untrusted Data due to insecure unserialize method in the Driver...

9.8CVSS

9.4AI Score

0.003EPSS

2022-05-06 08:15 PM
74
4
cve
cve

CVE-2021-44892

A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control...

8.8CVSS

8.8AI Score

0.004EPSS

2022-02-10 05:15 PM
62
cve
cve

CVE-2021-44350

SQL Injection vulnerability exists in ThinkPHP5 5.0.x <=5.1.22 via the parseOrder function in...

9.8CVSS

9.8AI Score

0.002EPSS

2021-12-15 11:15 PM
36
3
cve
cve

CVE-2021-36564

ThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component...

9.8CVSS

9.5AI Score

0.004EPSS

2021-12-06 09:15 PM
44
7
cve
cve

CVE-2021-36567

ThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component...

9.8CVSS

9.5AI Score

0.011EPSS

2021-12-06 09:15 PM
47
5
cve
cve

CVE-2021-43682

thinkphp-bjyblog (last update Jun 4 2021) is affected by a Cross Site Scripting (XSS) vulnerability in AdminBaseController.class.php. The exit function terminates the script and prints a message to the user that contains...

6.1CVSS

5.9AI Score

0.001EPSS

2021-12-02 02:15 PM
18
3
cve
cve

CVE-2021-43697

Workerman-ThinkPHP-Redis (last update Mar 16, 2018) is affected by a Cross Site Scripting (XSS) vulnerability. In file Controller.class.php, the exit function will terminate the script and print the message to the user. The message will contain $_GET{C('VAR_JSONP_HANDLER')] then there is a XSS...

6.1CVSS

5.8AI Score

0.001EPSS

2021-11-29 01:15 PM
19
3
cve
cve

CVE-2020-20120

ThinkPHP v3.2.3 and below contains a SQL injection vulnerability which is triggered when the array is not passed to the "where" and "query"...

9.8CVSS

9.7AI Score

0.002EPSS

2021-09-28 11:15 PM
40
cve
cve

CVE-2020-19705

thinkphp-zcms as of 20190715 allows SQL injection via...

9.8CVSS

9.8AI Score

0.002EPSS

2021-08-26 03:15 AM
35
6
cve
cve

CVE-2019-9082

ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Command Execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]= followed by the...

8.8CVSS

8.7AI Score

0.975EPSS

2019-02-24 06:29 PM
1056
In Wild
3
cve
cve

CVE-2018-17566

In ThinkPHP 5.1.24, the inner function delete can be used for SQL injection when its WHERE condition's value can be controlled by a user's...

9.8CVSS

9.8AI Score

0.002EPSS

2018-09-26 09:29 PM
16
cve
cve

CVE-2018-16385

ThinkPHP before 5.1.23 allows SQL Injection via the public/index/index/test/index query...

9.8CVSS

9.9AI Score

0.003EPSS

2018-09-03 02:29 AM
17