RCE Flaw Discovered PHP’s Windows Versions

The well-known open-source scripting language PHP (Hypertext Preprocessor) just had a critical RCE flaw patched and disclosed. Found and reported by security researcher Orange Tsai, CVE-2024-4577 affects the PHP-CGI module in the Windows version and impacts all releases post-5. x. The flaw, which involves an OS command injection, is found within the ‘Best-Fit’ feature of […]

The post RCE Flaw Discovered PHP’s Windows Versions appeared first on SecPod Blog.