A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control privileges.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Thinkphp |
Thinkphp |
3.2.3 (including) |
3.2.3 (including) |
References