A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control privileges.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-0881 A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control privileges.
Github GHSA Github GHSA GHSA-75jp-87w2-c6x2 ThinkPHP Remote Code Execution (RCE) vulnerability
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T04:32:13.250Z

Reserved: 2021-12-13T00:00:00

Link: CVE-2021-44892

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-10T17:15:09.330

Modified: 2024-11-21T06:31:39.903

Link: CVE-2021-44892

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses