cve/2024/CVE-2024-34467.md
2024-06-09 00:33:16 +00:00

738 B

CVE-2024-34467

Description

ThinkPHP 8.0.3 allows remote attackers to discover the PHPSESSION cookie because think_exception.tpl (aka the debug error output source code) provides this in an error message for a crafted URI in a GET request.

POC

Reference

Github

No PoCs found on GitHub currently.