CVE-2024-4577

CRITICAL KEV RANSOMWARE NUCLEI LAB

PHP CGI Argument Injection Remote Code Execution

Title source: metasploit

Description

In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, when using Apache and PHP-CGI on Windows, if the system is set up to use certain code pages, Windows may use "Best-Fit" behavior to replace characters in command line given to Win32 API functions. PHP CGI module may misinterpret those characters as PHP options, which may allow a malicious user to pass options to PHP binary being run, and thus reveal the source code of scripts, run arbitrary PHP code on the server, etc.

Exploits (86)

exploitdb WORKING POC
by İbrahimsql · pythonwebappsphp
https://www.exploit-db.com/exploits/52331
nomisec WORKING POC 306 stars
by watchtowrlabs · remote
https://github.com/watchtowrlabs/CVE-2024-4577
nomisec WORKING POC 160 stars
by xcanwin · remote
https://github.com/xcanwin/CVE-2024-4577-PHP-RCE
nomisec SCANNER 79 stars
by TAM-K592 · remote
https://github.com/TAM-K592/CVE-2024-4577
nomisec WORKING POC 44 stars
by 11whoami99 · remote
https://github.com/11whoami99/CVE-2024-4577
nomisec WORKING POC 40 stars
by Night-have-dreams · remote
https://github.com/Night-have-dreams/php-cgi-Injector
nomisec WORKING POC 31 stars
by Chocapikk · remote
https://github.com/Chocapikk/CVE-2024-4577
nomisec WORKING POC 29 stars
by ZephrFish · remote
https://github.com/ZephrFish/CVE-2024-4577-PHP-RCE
nomisec WORKING POC 25 stars
by BTtea · remote
https://github.com/BTtea/CVE-2024-4577-RCE-PoC
nomisec WORKING POC 24 stars
by gh-ost00 · remote
https://github.com/gh-ost00/CVE-2024-4577-RCE
nomisec SCANNER 22 stars
by huseyinstif · remote
https://github.com/huseyinstif/CVE-2024-4577-Nuclei-Template
nomisec WORKING POC 12 stars
by gotr00t0day · remote
https://github.com/gotr00t0day/CVE-2024-4577
nomisec WORKING POC 9 stars
by manuelinfosec · remote
https://github.com/manuelinfosec/CVE-2024-4577
nomisec WORKING POC 8 stars
by K3ysTr0K3R · poc
https://github.com/K3ysTr0K3R/CVE-2024-4577-EXPLOIT
nomisec WORKING POC 8 stars
by l0n3m4n · remote
https://github.com/l0n3m4n/CVE-2024-4577-RCE
nomisec WORKING POC 5 stars
by longhoangth18 · remote
https://github.com/longhoangth18/CVE-2024-4577
nomisec WORKING POC 5 stars
by aavamin · poc
https://github.com/aavamin/cve-2024-4577
nomisec WORKING POC 5 stars
by bibo318 · remote
https://github.com/bibo318/CVE-2024-4577-RCE-ATTACK
nomisec WORKING POC 5 stars
by 0x20c · remote
https://github.com/0x20c/CVE-2024-4577-nuclei
github WORKING POC 4 stars
by halilkirazkaya · poc
https://github.com/halilkirazkaya/cve-poc-garage/tree/main/2024/CVE-2024-4577.md
nomisec WORKING POC 4 stars
by CirqueiraDev · remote
https://github.com/CirqueiraDev/MassExploit-CVE-2024-4577
nomisec WORKING POC 4 stars
by Sh0ckFR · remote
https://github.com/Sh0ckFR/CVE-2024-4577
nomisec WORKING POC 3 stars
by ibrahmsql · remote
https://github.com/ibrahmsql/CVE-2024-4577
nomisec SCANNER 3 stars
by JeninSutradhar · remote
https://github.com/JeninSutradhar/CVE-2024-4577-checker
nomisec SCANNER 3 stars
by zomasec · poc
https://github.com/zomasec/CVE-2024-4577
github SCANNER 2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2024/CVE-2024-4577
nomisec WORKING POC 2 stars
by byteReaper77 · remote
https://github.com/byteReaper77/CVE-2024-4577
nomisec WORKING POC 2 stars
by phirojshah · remote
https://github.com/phirojshah/CVE-2024-4577
nomisec WORKING POC 2 stars
by VictorShem · remote
https://github.com/VictorShem/CVE-2024-4577
nomisec WORKING POC 2 stars
by AlperenY-cs · poc
https://github.com/AlperenY-cs/CVE-2024-4577
nomisec WORKING POC 2 stars
by d3ck4 · remote
https://github.com/d3ck4/Shodan-CVE-2024-4577
nomisec SCANNER 1 stars
by ywChen-NTUST · remote
https://github.com/ywChen-NTUST/PHP-CGI-RCE-Scanner
nomisec WORKING POC 1 stars
by sug4r-wr41th · remote
https://github.com/sug4r-wr41th/CVE-2024-4577
nomisec SUSPICIOUS 1 stars
by ggfzx · remote
https://github.com/ggfzx/CVE-2024-4577
nomisec WRITEUP 1 stars
by PhinehasNarh · poc
https://github.com/PhinehasNarh/CVE-2024-4577-LetsDefend-walkthrough
nomisec SCANNER 1 stars
by nemu1k5ma · remote
https://github.com/nemu1k5ma/CVE-2024-4577
nomisec SCANNER 1 stars
by 0XFFFF-XD · poc
https://github.com/0XFFFF-XD/CVE-2024-4577-PHP-CGI-RCE
nomisec SCANNER 1 stars
by Sysc4ll3r · remote
https://github.com/Sysc4ll3r/CVE-2024-4577
nomisec SCANNER 1 stars
by Wh02m1 · remote
https://github.com/Wh02m1/CVE-2024-4577
nomisec WORKING POC 1 stars
by taida957789 · poc
https://github.com/taida957789/CVE-2024-4577
nomisec WORKING POC 1 stars
by Junp0 · remote
https://github.com/Junp0/CVE-2024-4577
nomisec WRITEUP
by rayngnpc · poc
https://github.com/rayngnpc/CVE-2024-4577-rayng
nomisec WORKING POC
by Skycritch · remote
https://github.com/Skycritch/CVE-2024-4577
nomisec WORKING POC
by a1ex-var1amov · remote
https://github.com/a1ex-var1amov/ctf-cve-2024-4577
nomisec SCANNER
by InfoSec-DB · poc
https://github.com/InfoSec-DB/PHPCGIScanner
nomisec WORKING POC
by Ianthinus · remote
https://github.com/Ianthinus/CVE-2024-4577
nomisec WORKING POC
by r0otk3r · remote
https://github.com/r0otk3r/CVE-2024-4577
nomisec WORKING POC
by mananjain61 · client-side
https://github.com/mananjain61/PHP-CGI-INTERNAL-RCE
nomisec WORKING POC
by KimJuhyeong95 · remote
https://github.com/KimJuhyeong95/cve-2024-4577
nomisec WORKING POC
by tntrock · remote
https://github.com/tntrock/CVE-2024-4577_PowerShell
nomisec WORKING POC
by Gill-Singh-A · remote
https://github.com/Gill-Singh-A/CVE-2024-4577-Exploit
github WORKING POC
by Anzinius · pythonpoc
https://github.com/Anzinius/CVE-PoC-Collection/tree/main/cve-2024-4577
nomisec SCANNER
by wilss0n · poc
https://github.com/wilss0n/CVE-2024-4577
nomisec WORKING POC
by Didarul342 · remote
https://github.com/Didarul342/CVE-2024-4577
nomisec WRITEUP
by tpdlshdmlrkfmcla · poc
https://github.com/tpdlshdmlrkfmcla/php-cgi-cve-2024-4577
nomisec WORKING POC
by Dejavu666 · remote
https://github.com/Dejavu666/CVE-2024-4577
nomisec WORKING POC
by ahmetramazank · poc
https://github.com/ahmetramazank/CVE-2024-4577
nomisec NO CODE
by AhmedMansour93 · poc
https://github.com/AhmedMansour93/Event-ID-268-Rule-Name-SOC292-Possible-PHP-Injection-Detected-CVE-2024-4577-
nomisec WORKING POC
by bughuntar · remote
https://github.com/bughuntar/CVE-2024-4577
nomisec SUSPICIOUS
by Entropt · poc
https://github.com/Entropt/CVE-2024-4577_Analysis
nomisec WORKING POC
by Jcccccx · remote
https://github.com/Jcccccx/CVE-2024-4577
nomisec WORKING POC
by a-roshbaik · infoleak
https://github.com/a-roshbaik/CVE-2024-4577-PHP-RCE
nomisec SCANNER
by gmh5225 · remote
https://github.com/gmh5225/CVE-2024-4577-PHP-RCE
nomisec WORKING POC
by charis3306 · remote
https://github.com/charis3306/CVE-2024-4577
nomisec SCANNER
by olebris · remote
https://github.com/olebris/CVE-2024-4577
nomisec WORKING POC
by jakabakos · remote
https://github.com/jakabakos/CVE-2024-4577-PHP-CGI-argument-injection-RCE
nomisec WORKING POC
by bl4cksku11 · remote
https://github.com/bl4cksku11/CVE-2024-4577
nomisec WORKING POC
by dbyMelina · remote
https://github.com/dbyMelina/CVE-2024-4577
nomisec SCANNER
by graphite-org · poc
https://github.com/graphite-org/CVE-2024-4577
nomisec WORKING POC
by WanLiChangChengWanLiChang · remote
https://github.com/WanLiChangChengWanLiChang/CVE-2024-4577-RCE-EXP
nomisec SCANNER
by Ra1n-60W · poc
https://github.com/Ra1n-60W/CVE-2024-4577
nomisec STUB
by princew88 · poc
https://github.com/princew88/CVE-2024-4577
vulncheck_xdb SCANNER
remote
https://github.com/mistakes1337/CVE-2024-4577
vulncheck_xdb WRITEUP
remote
https://github.com/user20252228/php-cgi-cve-2024-4577
vulncheck_xdb WORKING POC
remote
https://github.com/VictorShem/QVD-2024-26473
vulncheck_xdb SCANNER
remote
https://github.com/XiangDongCJC/CVE-2024-4577-PHP-CGI-RCE
vulncheck_xdb WORKING POC
remote
https://github.com/aaddmin1122345/cve-2024-4577
vulncheck_xdb SCANNER
remote
https://github.com/BitMEXResearch/CVE-2024-4577
vulncheck_xdb WORKING POC
remote
https://github.com/0xPugal/my-nuclei-templates
metasploit WORKING POC EXCELLENT
by Orange Tsai, watchTowr, sfewer-r7 · rubypocphp
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/php_cgi_arg_injection_rce_cve_2024_4577.rb

Nuclei Templates (1)

PHP CGI - Argument Injection
CRITICALVERIFIEDby Hüseyin TINTAŞ,sw0rk17,s4e-io,pdresearch
Shodan: cpe:"cpe:2.3:a:php:php" || http.title:"php warning" || "fatal error" || php.ini || the requested resource <code class="url"> || x-powered-by:"php"
FOFA: title="php warning" || "fatal error"

References (23)

... and 3 more

Scores

CVSS v3 9.8
EPSS 0.9437
EPSS Percentile 100.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Lab Environment

COMMUNITY
Community Lab
docker pull wazuh/wazuh-manager:4.9.0
docker pull wazuh/wazuh-indexer:4.9.0
docker pull wazuh/wazuh-dashboard:4.9.0
+76 more repos

Details

CISA KEV 2024-06-12
VulnCheck KEV 2024-06-07
InTheWild.io 2024-06-09
ENISA EUVD EUVD-2024-44188
Ransomware Use Confirmed
CWE
CWE-78
Status published
Products (3)
fedoraproject/fedora 39
fedoraproject/fedora 40
php/php 8.1.0 - 8.1.29
Published Jun 09, 2024
KEV Added Jun 12, 2024
Tracked Since Feb 18, 2026