CVE-2020-25540
ThinkAdmin directory traversal vulnerability
Record summary
CVE-2020-25540 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit, 4 repository PoCs, and 1 Nuclei template.
Description
ThinkAdmin v6 is affected by a directory traversal vulnerability. An unauthorized attacker can read arbitrarily file on a remote server via GET request encode parameter.
Exploitation context
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
thinkadminBrowse thinkadmin / thinkadmin | VulnCheck | Version data not supplied | |
zoujingli/thinkadminBrowse Packagist / zoujingli/thinkadmin | GitHub Advisory | 6.0 | affected |
Proofs of concept
5Catalogued exploits
ExploitDBThinkAdmin 6 - Arbitrarily File ReadExploitDB exploitby HzllagaNot analyzed1 file
Repository PoCs
GitHubSchira4396/CVE-2020-25540Repository PoCby Schira4396Stars: 7Not analyzed3 files
GitHubRajChowdhury240/ThinkAdmin-CVE-2020-25540Repository PoCby RajChowdhury240Stars: 1Not analyzed2 files
GitHublowkey0808/cve-2020-25540Repository PoCby lowkey0808Stars: 0Not analyzed2 files
GitHubsimonlee-hello/CVE-2020-25540Repository PoCby simonlee-helloStars: 0Not analyzed2 files
Nuclei templates
1ProjectDiscoveryHIGHThinkAdmin 6 - Local File InclusionCVSS 7.5
ThinkAdmin version 6 is affected by a local file inclusion vulnerability because an unauthorized attacker can read arbitrary files on a remote server via GET request encode parameter.
Impact
Successful exploitation of this vulnerability can lead to unauthorized access to sensitive files, remote code execution, and potential compromise of the entire system.
Remediation
Apply the latest patch or upgrade to a version that is not affected by the vulnerability.
Source: ProjectDiscovery