Get a Pentest and security assessment of your IT network.

News

PHP working on new patch for critical vulnerability after initial one failed

The PHP Group plans to release new versions of the PHP processor on Tuesday in order to patch two publicly known critical remote code execution vulnerabilities. One of the vulnerabilities is known as CVE-2012-1823 and is located in a component that allows PHP to run in a Common Gateway Interface (CGI) configuration. The bug allows for URL query strings that contain the “-” character to be interpreted by the php-cgi binary as command line switches, such as -s, -d, -c. The vulnerability can be exploited to disclose source code from PHP scripts or to remotely execute arbitrary code on vulnerable systems.”]

Source: https://www.csoonline.com/article/2131635/php-working-on-new-patch-for-critical-vulnerability-after-initial-one-failed.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Who and why is attacking companies in the Nordic Countries?

News

Shamoon Malware, cyber espionage tool, cyber weapon or