Thinkadmin

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    2
    Critical Level Threats
    4
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-10749

    ThinkAdmin Plugs.php script deserialization

    Last Modified: Nov 06, 2024
    Published: Nov 03, 2024

    CVE-2023-48966

    An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to execute arbitrary code via a crafted Zip file.

    Last Modified: Nov 21, 2024
    Published: Dec 04, 2023

    CVE-2023-48965

    An issue in the component /admin/api.plugs/script of ThinkAdmin v6.1.53 allows attackers to getshell via providing a crafted URL to download a malicious PHP file.

    Last Modified: Nov 26, 2024
    Published: Dec 04, 2023

    CVE-2023-34833

    An arbitrary file upload vulnerability in the component /api/upload.php of ThinkAdmin v6 allows attackers to execute arbitrary code via a crafted file.

    Last Modified: Nov 27, 2024
    Published: Jun 15, 2023

    CVE-2020-35296

    ThinkAdmin v6 has default administrator credentials, which allows attackers to gain unrestricted administratior dashboard access.

    Last Modified: Nov 21, 2024
    Published: Mar 03, 2021
    Items Per Page