CVE-2019-11043

HIGH KEV RANSOMWARE

Php < 7.1.33 - Out-of-Bounds Write

Title source: rule

Description

In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain configurations of FPM setup it is possible to cause FPM module to write past allocated buffers into the space reserved for FCGI protocol data, thus opening the possibility of remote code execution.

Exploits (32)

nomisec WORKING POC 1,835 stars
by neex · remote
https://github.com/neex/phuip-fpizdam
nomisec WORKING POC 146 stars
by theMiddleBlue · remote
https://github.com/theMiddleBlue/CVE-2019-11043
nomisec WORKING POC 105 stars
by jas502n · infoleak
https://github.com/jas502n/CVE-2019-11043
nomisec WORKING POC 27 stars
by akamajoris · remote
https://github.com/akamajoris/CVE-2019-11043-Docker
nomisec SCANNER 16 stars
by k8gege · infoleak
https://github.com/k8gege/CVE-2019-11043
nomisec WORKING POC 14 stars
by kriskhub · remote
https://github.com/kriskhub/CVE-2019-11043
nomisec WORKING POC 14 stars
by 0th3rs-Security-Team · remote
https://github.com/0th3rs-Security-Team/CVE-2019-11043
nomisec SCANNER 8 stars
by ypereirareis · remote
https://github.com/ypereirareis/docker-CVE-2019-11043
nomisec WORKING POC 5 stars
by huowen · remote
https://github.com/huowen/CVE-2019-11043
nomisec SCANNER 4 stars
by AleWong · remote
https://github.com/AleWong/PHP-FPM-Remote-Code-Execution-Vulnerability-CVE-2019-11043-
nomisec WORKING POC 4 stars
by lindemer · remote
https://github.com/lindemer/CVE-2019-11043
github WRITEUP 3 stars
by HxDDD · poc
https://github.com/HxDDD/CVE-PoC/tree/main/Nginx/(RCE) CVE-2019-11043.md
nomisec WORKING POC 3 stars
by MRdoulestar · remote
https://github.com/MRdoulestar/CVE-2019-11043
nomisec WORKING POC 3 stars
by CodeHex083 · remote
https://github.com/CodeHex083/phuip-fpizdam
nomisec WORKING POC 2 stars
by jptr218 · remote
https://github.com/jptr218/php_hack
nomisec WORKING POC 1 stars
by fairyming · poc
https://github.com/fairyming/CVE-2019-11043
nomisec WORKING POC 1 stars
by moniik · poc
https://github.com/moniik/CVE-2019-11043_env
nomisec WORKING POC 1 stars
by shadow-horse · remote
https://github.com/shadow-horse/cve-2019-11043
nomisec WRITEUP
by AndrewMas99 · poc
https://github.com/AndrewMas99/CVE-2019-11043-Vulnerability
nomisec WORKING POC
by a1ex-var1amov · poc
https://github.com/a1ex-var1amov/ctf-cve-2019-11043
nomisec WORKING POC
by bayazid-bit · poc
https://github.com/bayazid-bit/CVE-2019-11043-
nomisec WRITEUP
by ianxtianxt · poc
https://github.com/ianxtianxt/CVE-2019-11043
nomisec NO CODE
by B1gd0g · poc
https://github.com/B1gd0g/CVE-2019-11043
nomisec WORKING POC
by corifeo · remote
https://github.com/corifeo/CVE-2019-11043
nomisec SUSPICIOUS
by tinker-li · poc
https://github.com/tinker-li/CVE-2019-11043
gitlab WORKING POC
by yangsec888 · poc
https://gitlab.com/yangsec888/phuip-fpizdam
nomisec SCANNER
by jas9reet · infoleak
https://github.com/jas9reet/CVE-2019-11043
nomisec WORKING POC
by gon905332-jpg · remote
https://github.com/gon905332-jpg/cve-2019-11043.py
nomisec NO CODE
by alokaranasinghe · poc
https://github.com/alokaranasinghe/cve-2019-11043
metasploit WORKING POC NORMAL
by neex, cdelafuente-r7 · rubypocphp
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/php_fpm_rce.rb
exploitdb WORKING POC
by Emil Lerner · webappsphp
https://www.exploit-db.com/exploits/47553
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotephp
https://www.exploit-db.com/exploits/48182

References (28)

... and 8 more

Scores

CVSS v3 8.7
EPSS 0.9405
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N

Exploitation Intel

CISA KEV 2022-03-25
VulnCheck KEV 2019-12-24
InTheWild.io 2019-10-26
ENISA EUVD EUVD-2019-2751
Ransomware Use Confirmed

Classification

CWE
CWE-120 CWE-787
Status published

Affected Products (50)

php/php < 7.1.33
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
debian/debian_linux
debian/debian_linux
fedoraproject/fedora
fedoraproject/fedora
fedoraproject/fedora
tenable/tenable.sc < 5.19.0
redhat/software_collections
redhat/enterprise_linux
... and 35 more

Timeline

Published Oct 28, 2019
KEV Added Mar 25, 2022
Tracked Since Feb 18, 2026