logo

New PHP Vulnerability Exposes Windows Servers to Remote Code Execution

ID: 4e62031c-2a5a-52eb-a70b-d48aa316855c

STIX ID: report--4e62031c-2a5a-52eb-a70b-d48aa316855c

Feed Name: The Hacker News

Threat Score
85/100

Date Published: 2024-06-08

Date Updated: 2026-05-06

Author: [email protected] (The Hacker News)

...
...

A critical PHP CGI argument injection vulnerability (CVE-2024-4577) affecting PHP on Windows—particularly when using Chinese or Japanese locales—can enable unauthenticated remote code execution; fixes were released for PHP 8.3.8, 8.2.20, and 8.1.29, but proof-of-concept exploits and active exploitation were observed within 24 hours, including delivery of TellYouThePass ransomware via an HTA payload.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.