Notes

PHP overlooked the Best-Fit character conversion feature in Windows during its design. When PHP-CGI runs on the Windows platform and uses specific code pages (Simplified Chinese 936, Traditional Chinese 950, Japanese 932, etc.), attackers can craft malicious requests to bypass the CVE-2012-1823 patch. This allows them to execute arbitrary PHP code without the need for authentication.

Queries

censys
services: Part of private feed. Please contact us.
fofa
server="PH Part of private feed. Please contact us.
hunterhow
product.na Part of private feed. Please contact us.
leakix
+service.s Part of private feed. Please contact us.
netlas
tag.name:" Part of private feed. Please contact us.
shodan
cpe:"cpe:/ Part of private feed. Please contact us.
zoomeye
+app:"PHP" Part of private feed. Please contact us.
© 2024 Brackket Index.