Medium severity6.1NVD Advisory· Published Jun 15, 2023· Updated Jun 17, 2026
CVE-2023-34833
CVE-2023-34833
Description
An arbitrary file upload vulnerability in the component /api/upload.php of ThinkAdmin v6 allows attackers to execute arbitrary code via a crafted file.
Affected products
3cpe:2.3:a:thinkadmin:thinkadmin:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:thinkadmin:thinkadmin:6.0:*:*:*:*:*:*:*
- (no CPE)range: v6
- ThinkAdmin/ThinkAdmindescription
Patches
Vulnerability mechanics
References
1- note.youdao.com/s/3tge43wHnvdExploit
News mentions
0No linked articles in our index yet.