Skip to main content

CVE-2024-4577: PHP-CGI Argument Injection Vulnerability (PoC Available)

  • June 10, 2024
  • 1 comment
  • 344 views

dips
Forum|alt.badge.img+7
  • On the path to Greatness

Hi Folks, 

PHP has a Remote Code Execution Vulnerability that has been rated as 9.8 on CVSSv3 which is pretty much a ‘PATCH NOW’ vulnerability. 

Versions affected:

  • 8.1.28 and below
  • 8.2.19 and below
  • 8.3.7 and below

More here:

Latest Versions - Release notes:

1 comment

Chris.Childerhose
Forum|alt.badge.img+21

Thanks for sharing this Dips.  Glad I have a good hosting provider for my blog that updates regularly for me.  Hopefully it does not become too bad.