thinkphp 6.0.0~6.0.13 and 6.1.0~6.1.1 contains a deserialization vulnerability. This vulnerability allows attackers to execute arbitrary code via a crafted payload.
References
Link | Resource |
---|---|
https://gist.github.com/Dar1in9s/aa87df679057db3bbdade360d77f8cca | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-02-08T00:00:00
Updated: 2023-02-08T00:00:00
Reserved: 2022-11-28T00:00:00
Link: CVE-2022-45982
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-02-08T21:15:10.653
Modified: 2023-02-16T19:41:35.967
Link: CVE-2022-45982
JSON object: View
Redhat Information
No data.
CWE