ThinkPHP Framework before 6.0.14 allows local file inclusion via the lang parameter when the language pack feature is enabled (lang_switch_on=true). An unauthenticated and remote attacker can explo...
ThinkPHP Framework vulnerable to remote code execution
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityClick technique nodes to view MITRE ATT&CK details. Scroll to zoom, drag to pan.
1 Nuclei template available for automated vulnerability detection.
Get the full picture for CVE-2022-47945 and every CVE in our database. Create a free account — no credit card required.
Create Free Account