CVE-2019-9082
Essential information
- Published
- 03/11/2021 01:00
- Modified
- 21/12/2025 07:38
- Author
- Cybersecurity and Infrastructure Security Agency
- Creator
- Cybersecurity and Infrastructure Security Agency
- CISA KEV
- Yes
- CWE
- —
- CVSS vector
- — — —
Description
ThinkPHP contains an unspecified vulnerability that allows for remote code execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]= followed by the command.
NVD status
- NVD
- View on NVD