FortiGuard
Fortinet’s Global Threat Intelligence and Research
Pwalia
Staff
Staff
Article Id 253880
Description A remote code execution vulnerability exists within multiple subsystems of ThinkPHP 5.0.x and 5.1.x. The FortiGuard Labs continue seeing high exploitation attempts of these old vulnerabilities of more than 50,000 IPS device detections per day. There are multiple actors abusing this flaw to install malware such as Mirai like botnet, Lucifer, Cryptocurrency miners.
CVEs CVE-2019-9082CVE-2018-20062
Severity Medium
Last Revised Apr 19, 2023
Outbreak Report Link https://www.fortiguard.com/outbreak-alert/thinkphp-rce
Contributors