CVE-2019-11043

HIGH KEV RANSOMWARE LAB

Php < 7.1.33 - Out-of-Bounds Write

Title source: rule

Description

In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain configurations of FPM setup it is possible to cause FPM module to write past allocated buffers into the space reserved for FCGI protocol data, thus opening the possibility of remote code execution.

Exploits (33)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotephp
https://www.exploit-db.com/exploits/48182
exploitdb WORKING POC
by Emil Lerner · webappsphp
https://www.exploit-db.com/exploits/47553
nomisec WORKING POC 1,835 stars
by neex · remote
https://github.com/neex/phuip-fpizdam
nomisec WORKING POC 146 stars
by theMiddleBlue · remote
https://github.com/theMiddleBlue/CVE-2019-11043
nomisec WORKING POC 105 stars
by jas502n · infoleak
https://github.com/jas502n/CVE-2019-11043
nomisec WORKING POC 27 stars
by akamajoris · remote
https://github.com/akamajoris/CVE-2019-11043-Docker
nomisec SCANNER 16 stars
by k8gege · infoleak
https://github.com/k8gege/CVE-2019-11043
nomisec WORKING POC 14 stars
by kriskhub · remote
https://github.com/kriskhub/CVE-2019-11043
nomisec WORKING POC 14 stars
by 0th3rs-Security-Team · remote
https://github.com/0th3rs-Security-Team/CVE-2019-11043
nomisec SCANNER 8 stars
by ypereirareis · remote
https://github.com/ypereirareis/docker-CVE-2019-11043
nomisec WORKING POC 5 stars
by huowen · remote
https://github.com/huowen/CVE-2019-11043
nomisec WORKING POC 4 stars
by lindemer · remote
https://github.com/lindemer/CVE-2019-11043
nomisec SCANNER 4 stars
by AleWong · remote
https://github.com/AleWong/PHP-FPM-Remote-Code-Execution-Vulnerability-CVE-2019-11043-
nomisec WORKING POC 3 stars
by CodeHex083 · remote
https://github.com/CodeHex083/phuip-fpizdam
github WRITEUP 3 stars
by HxDDD · poc
https://github.com/HxDDD/CVE-PoC/tree/main/Nginx/(RCE) CVE-2019-11043.md
nomisec WORKING POC 3 stars
by MRdoulestar · remote
https://github.com/MRdoulestar/CVE-2019-11043
nomisec WORKING POC 2 stars
by jptr218 · remote
https://github.com/jptr218/php_hack
nomisec WORKING POC 1 stars
by moniik · poc
https://github.com/moniik/CVE-2019-11043_env
nomisec WORKING POC 1 stars
by shadow-horse · remote
https://github.com/shadow-horse/cve-2019-11043
nomisec WORKING POC 1 stars
by fairyming · poc
https://github.com/fairyming/CVE-2019-11043
nomisec WORKING POC
by bayazid-bit · poc
https://github.com/bayazid-bit/CVE-2019-11043
gitlab WORKING POC
by yangsec888 · poc
https://gitlab.com/yangsec888/phuip-fpizdam
nomisec WORKING POC
by gon905332-jpg · remote
https://github.com/gon905332-jpg/cve-2019-11043.py
nomisec WRITEUP
by AndrewMas99 · poc
https://github.com/AndrewMas99/CVE-2019-11043-Vulnerability
nomisec WORKING POC
by a1ex-var1amov · poc
https://github.com/a1ex-var1amov/ctf-cve-2019-11043
nomisec WORKING POC
by bayazid-bit · poc
https://github.com/bayazid-bit/CVE-2019-11043-
nomisec SCANNER
by jas9reet · infoleak
https://github.com/jas9reet/CVE-2019-11043
nomisec WORKING POC
by corifeo · remote
https://github.com/corifeo/CVE-2019-11043
nomisec NO CODE
by alokaranasinghe · poc
https://github.com/alokaranasinghe/cve-2019-11043
nomisec WRITEUP
by ianxtianxt · poc
https://github.com/ianxtianxt/CVE-2019-11043
nomisec SUSPICIOUS
by tinker-li · poc
https://github.com/tinker-li/CVE-2019-11043
nomisec NO CODE
by B1gd0g · poc
https://github.com/B1gd0g/CVE-2019-11043
metasploit WORKING POC NORMAL
by neex, cdelafuente-r7 · rubypocphp
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/php_fpm_rce.rb

References (28)

... and 8 more

Scores

CVSS v3 8.7
EPSS 0.9405
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N

Lab Environment

COMMUNITY
Community Lab
docker pull themiddle/php_cve-2019-11043
+27 more repos

Details

CISA KEV 2022-03-25
VulnCheck KEV 2019-12-24
InTheWild.io 2019-10-26
ENISA EUVD EUVD-2019-2751
Ransomware Use Confirmed
CWE
CWE-120 CWE-787
Status published
Products (50)
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 14.04
canonical/ubuntu_linux 16.04
canonical/ubuntu_linux 18.04
canonical/ubuntu_linux 19.04
canonical/ubuntu_linux 19.10
debian/debian_linux 9.0
debian/debian_linux 10.0
fedoraproject/fedora 29
fedoraproject/fedora 30
... and 40 more
Published Oct 28, 2019
KEV Added Mar 25, 2022
Tracked Since Feb 18, 2026