VID |
22623 |
Severity |
30 |
Port |
80, ... |
Protocol |
TCP |
Class |
CGI |
Detailed Description |
According to its banner, the version of PHP installed on the remote host is 5.4.x earlier than 5.4.28, and is, therefore, potentially affected by a permission escalation vulnerability. A flaw exists within the FastCGI Process Manager (FPM) when setting permissions for a Unix socket. This could allow a remote attacker to gain elevated privileges after gaining access to the socket.
* Note: This check solely relied on the version number of the remote PHP to assess this vulnerability, so this might be a false positive.
* References: http://www.php.net/ChangeLog-5.php#5.4.28 https://bugs.php.net/bug.php?id=67060
* Platforms Affected: PHP Prior to 5.4.28 Any operating system Any version |
Recommendation |
Upgrade to the latest version of PHP (5.4.28 or later), available from the PHP web site at http://www.php.net/downloads.php |
Related URL |
CVE-2014-0185 (CVE) |
Related URL |
67118 (SecurityFocus) |
Related URL |
(ISS) |
|