AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-2335

HIGH · CVSS 7.5 EPSS 32.54%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-05-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-2335
Severity
HIGH
CVSS
7.5
EPSS
32.54%

Original NVD Description

php-wrapper.fcgi does not properly handle command-line arguments, which allows remote attackers to bypass a protection mechanism in PHP 5.3.12 and 5.4.2 and execute arbitrary code by leveraging improper interaction between the PHP sapi/cgi/cgi_main.c component and a query string beginning with a +- sequence.