Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2026-2113 PoC — tpAdmin 代码问题漏洞

Source
Associated Vulnerability
Title:tpAdmin 代码问题漏洞 (CVE-2026-2113)
Description:tpAdmin是Ethan个人开发者的一个基于ThinkPHP5的管理后台。 tpadmin 1.3.12及之前版本存在代码问题漏洞,该漏洞源于对组件WebUploader中库文件/public/static/admin/lib/webuploader/0.1.5/server/preview.php的错误操作,可能导致反序列化。
Description
A Remote Code Execution vulnerability allowing unauthenticated attackers to upload arbitrary PHP files directly to the web server. This results in immediate Remote Code Execution with web server privileges.
File Snapshot

None
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.