Thinkphp 5.1.41 and 5.0.24 has a code logic error which causes file upload getshell.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/top-think/framework/issues/2772 | Exploit Issue Tracking Third Party Advisory | 
| https://github.com/top-think/framework/issues/2772 | Exploit Issue Tracking Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 07:27
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2022-12-06 16:15
Updated : 2025-04-23 15:15
NVD link : CVE-2022-44289
Mitre link : CVE-2022-44289
CVE.ORG link : CVE-2022-44289
JSON object : View
Products Affected
                thinkphp
- thinkphp
CWE
                
                    
                        
                        CWE-434
                        
            Unrestricted Upload of File with Dangerous Type
