CVE-2012-1823 is a critical remote code execution vulnerability affecting PHP versions before 5.3.12 and 5.4.2 when configured as a CGI script. It allows attackers to execute arbitrary code by injecting command-line options into query strings lacking an equals sign. This vulnerability has a CVSS score of 9.8 (CRITICAL) due to its network-based attack vector, low complexity, and complete compromise potential. It is actively exploited in the wild, with multiple public exploits, Metasploit modules, and extensive community discussion, indicating widespread awareness and potential for attack.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 5.3.12CPE matchmatch criteria | cpe:2.3:a:php:php:*:*:*:*:*:*:*:* | ||
>= 5.4.0, < 5.4.2CPE matchmatch criteria | cpe:2.3:a:php:php:*:*:*:*:*:*:*:* | ||
39CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* | ||
40CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* | ||
6.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.