CVE-2022-45982

CVSS V2 None CVSS V3 None
Description
thinkphp 6.0.0~6.0.13 and 6.1.0~6.1.1 contains a deserialization vulnerability. This vulnerability allows attackers to execute arbitrary code via a crafted payload.
Overview
  • CVE ID
  • CVE-2022-45982
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-02-08T21:15:10
  • Last Modified Date
  • 2023-02-16T19:41:35
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:thinkphp:thinkphp:*:*:*:*:*:*:*:* 1 OR 6.0.0 6.0.13
cpe:2.3:a:thinkphp:thinkphp:6.1.0:*:*:*:*:*:*:* 1 OR
References
Reference URL Reference Tags
https://gist.github.com/Dar1in9s/aa87df679057db3bbdade360d77f8cca Exploit Third Party Advisory
History
Created Old Value New Value Data Type Notes
2023-04-17 07:25:14 Added to TrackCVE
2023-04-17 07:25:16 Weakness Enumeration new