CVE-2012-1823

critical

Description

sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle query strings that lack an = (equals sign) character, which allows remote attackers to execute arbitrary code by placing command-line options in the query string, related to lack of skipping a certain php_getopt for the 'd' case.

References

https://github.com/khwajasaad267-coder/cve-2024-4577-lab

https://github.com/razureink/cve-2024-4577-phpcgi_rce_reproduction

https://github.com/tanasescualexandrugabriel/Vulnerability-Assessment-and-OSINT-CVE-2012-1823

https://github.com/mehedi-hasan-sami98/DVWA-ZAP-PENTEST

https://github.com/guilhermeferreira24/healthcare-cybersecurity-analysis

https://github.com/Alam686/openvas-vulnerability-assessment

https://github.com/tryj/CVE-2012-1823---PHP-CGI---RCE

https://github.com/ZeroPathAI/zeropath-ctf

https://github.com/hackherMind-Pixel/Vulnerable-Lab-Exploitation

https://github.com/waburig/Open-Worldwide-Application-Security-Project-OWASP-

https://github.com/rayngnpc/CVE-2024-4577-rayng

https://github.com/nulltrace1336/PHP-CGI-Argument-Injection-Exploit

https://github.com/g1san/Agents-for-Vulnerable-Dockers-and-related-Benchmarks

https://github.com/JasonHobs/CVE-2012-1823-exploit-for-https-user-password-web

https://github.com/BTtea/CVE-2024-4577-RCE-PoC

https://github.com/charis3306/CVE-2024-4577

https://github.com/bl4cksku11/CVE-2024-4577

https://github.com/zomasec/CVE-2024-4577

https://github.com/Unix13/metasploitable2

https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2012-1823

https://lists.fedoraproject.org/archives/list/[email protected]/message/PKGTQUOA2NTZ3RXN22CSAUJPIRUYRB4B/

https://bugs.php.net/patch-display.php?bug_id=61910&patch=cgi.diff&revision=1335984315&display=1

https://bugs.php.net/bug.php?id=61910

http://www.securitytracker.com/id?1027022

http://www.php.net/archive/2012.php#id2012-05-03-1

http://www.php.net/ChangeLog-5.php#5.4.2

http://www.openwall.com/lists/oss-security/2024/06/07/1

http://www.kb.cert.org/vuls/id/520827

http://secunia.com/advisories/49087

http://secunia.com/advisories/49085

http://secunia.com/advisories/49065

http://secunia.com/advisories/49014

http://eindbazen.net/2012/05/php-cgi-advisory-cve-2012-1823/

Details

Source: Mitre, NVD

Published: 2012-05-11

Updated: 2026-06-16

Known Exploited Vulnerability (KEV)

Risk Information

CVSS v2

Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Severity: High

CVSS v3

Base Score: 9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical

EPSS

EPSS: 0.99998

Vulnerability Watch

Tenable Research has classified this CVE under the following Vulnerability Watch classification, which includes active and historical (inactive) classifications. You can learn more about these classifications on our blog.

Vulnerability of Interest