A vulnerability that allows attackers to take control of websites running older versions of the PHP scripting language continues to threaten the Internet almost two years after security researchers first warned that attackers could use it to remotely execute malicious code on vulnerable servers.. As Ars reported 22 months ago, the code-execution exploits worked against PHP sites only when they ran in common gateway interface mode, a condition that applied by default to those running the Apache Web server. . PHP weaknesses persistently threaten web platforms, enabling hackers to run detrimental scripts even in the presence of warning notifications.. PHP Exploit, Site Security, Code Injection Risk. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.