Security: PHP 5.4 Remote Exploit PoC in the wild

Started by Gregg, May 19, 2012, 07:14:49 PM

Previous topic - Next topic


There is a remote exploit in the wild for PHP 5.4.3 in Windows, which takes advantage of a vulnerability in the com_print_typeinfo function. The php engine needs to execute the malicious code, which can include any shellcode like the the ones that bind a shell to a port...


Exploit: hxxp://
(change the hxxp to http to see it)