CVE-2012-2335 describes a vulnerability in php-wrapper.fcgi that allows remote attackers to bypass a protection mechanism in PHP versions 5.3.12 and 5.4.2. This flaw, stemming from improper handling of command-line arguments and interaction with the PHP sapi/cgi/cgi_main.c component, enables arbitrary code execution. With a CVSS score of 7.5, this vulnerability is considered highly severe, requiring no authentication and having low attack complexity, potentially leading to full compromise (confidentiality, integrity, availability). While no public exploit intelligence (Metasploit, Nuclei, ExploitDB) is available, there is some community discussion and media coverage, including a mention in relation to RubyMiner malware, suggesting potential real-world relevance despite its age.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.3.12CPE matchmatch criteria | cpe:2.3:a:php:php:5.3.12:*:*:*:*:*:*:* | ||
5.4.2CPE matchmatch criteria | cpe:2.3:a:php:php:5.4.2:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.