CVE-2023-48966

Publication date

2023-12-04 00:00:00

Family

mitre

State

PUBLISHED

Description

An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to execute arbitrary code via a crafted Zip file.