PHP cURL Lib NULL Byte Injection Vulnerability
Publish Date: 21 Dezember 2016
Schweregrad:: Kritisch
Beschreibung
The php_handler function in sapi/apache2handler/sapi_apache2.c in PHP when the Apache HTTP Server 2.4.x is used, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via pipelined HTTP requests that result in a "deconfigured interpreter."
Trend Micro Lösungen
Apply associated Trend Micro DPI Rules.