Record summary

CVE-2021-44892 has a selected CVSS score of 8.8 (high).

Description

A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control privileges.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jul 15, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Affected products and versions

2
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied
GitHub AdvisoryThrough 3.2.3affected

References

3