High severity8.8NVD Advisory· Published Dec 4, 2023· Updated Jun 17, 2026
CVE-2023-48965
CVE-2023-48965
Description
An issue in the component /admin/api.plugs/script of ThinkAdmin v6.1.53 allows attackers to getshell via providing a crafted URL to download a malicious PHP file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:thinkadmin:thinkadmin:6.1.53:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:thinkadmin:thinkadmin:6.1.53:*:*:*:*:*:*:*
- (no CPE)range: =6.1.53
- ThinkAdmin/ThinkAdmindescription
Patches
Vulnerability mechanics
References
1- github.com/1dreamGN/CVE/blob/main/ThinkAdmin%20Logical%20defect%20getshell.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.