Showing 9 vulnerabilities on this page for ThinkPHP

Signals CISA KEV Ransomware Nuclei
thinkphp vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

ThinkPHP 5.0.23 Remote Code Execution via invokefunction

ThinkPHP 5.0.23 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary PHP code by invoking functions through the routing parameter. Attackers can craft requests to the index.php endpoint with malicious function parameters to execute system commands with application privileges.

CWE-639Apr 22, 2026
CVSS9.3v4.0EPSS0.89%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

ThinkPHP deserialization vulnerability

A deserialization vulnerability in the component \controller\Index.php of Thinkphp v6.1.3 to v8.0.4 allows attackers to execute arbitrary code.

CWE-502Oct 30, 2024
CVSS-v4.0EPSS0.885%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

ThinkPHP deserialization vulnerability

A deserialization vulnerability in Thinkphp v6.1.3 to v8.0.4 allows attackers to execute arbitrary code.

CWE-502Sep 9, 2024
CVSS-v4.0EPSS4.21%PoCs2SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

ThinkPHP Cross-Site Scripting Vulnerability

ThinkPHP 8.0.3 allows remote attackers to exploit XSS due to inadequate filtering of function argument values in think_exception.tpl.

CWE-79May 4, 2024
CVSS6.1v3.1EPSS0.417%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

ThinkPHP Framework vulnerable to remote code execution

ThinkPHP Framework before 6.0.14 allows local file inclusion via the lang parameter when the language pack feature is enabled (lang_switch_on=true). An unauthenticated and remote attacker can exploit this to execute arbitrary operating system commands, as demonstrated by including pearcmd.php.

CWE-22Dec 23, 20221 related artifact
CVSS9.8v3.1EPSS16.4%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX

Exposure of Resource to Wrong Sphere in ThinkPHP Framework

ThinkPHP Framework v5.0.24 was discovered to be configured without the PATHINFO parameter. This allows attackers to access all system environment parameters from index.php. NOTE: this is disputed by a third party because system environment exposure is an intended feature of the debugging mode.

CWE-284CWE-668Mar 20, 20221 related artifact
CVSS7.5v3.1EPSS4.75%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX

ThinkPHP Remote Code Execution (RCE) vulnerability

A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control privileges.

Feb 10, 2022
CVSS8.8v3.1EPSS2.02%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

ThinkPHP Remote Code Execution Vulnerability

ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Command Execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]= followed by the command.

CWE-306CWE-94Feb 24, 20191 related artifact
CVSS8.8v3.1EPSS97.4%PoCs3SignalsListed in CISA KEVNo known ransomware use1 Nuclei templateSTIX

thinkphp SQL Injection via the index.php s parameter

thinkphp 3.1.3 has SQL Injection via the index.php s parameter.

CWE-89Apr 19, 2018
CVSS9.8v3.0EPSS1.14%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX