CVE Watchtower


← Back to CVE List

CVE-2012-2335NVD

Vulnerability Summary

php-wrapper.fcgi does not properly handle command-line arguments, which allows remote attackers to bypass a protection mechanism in PHP 5.3.12 and 5.4.2 and execute arbitrary code by leveraging improper interaction between the PHP sapi/cgi/cgi_main.c component and a query string beginning with a +- sequence.
Severity Level
UNKNOWN
Published Date
May 11, 2012
Last Modified
Apr 29, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
16.52%Probability
Root Weakness (CWE)
Refer to the official MITRE database for detailed architectural specifications regarding this weakness.