PHP-CGI Vulnerability

Home Forums Wordfence Support Questions PHP-CGI Vulnerability

This topic contains 3 replies, has 2 voices, and was last updated by  mark 1 year ago.

Viewing 4 posts - 1 through 4 (of 4 total)
Author Posts
Author Posts

Jon Brown

said

Does WordFence protect against the recent PHP-CGI Vulnerability?

Personally I usually run WP w/ FastCGI which is unaffected by this, but wondering regardless as I’m sure I have at least one site out there without fastcgi turned on).

May 8, 2012 at 4:07 pm

mark

said

Hi Jon,

Older versions of Wordfence do give you a level of protection against CVE-2012-1823 and it’s predecessor. However we have just released 2.0.1 which includes specific detection of the attack vectors that we’re seeing.

This vulnerability is still not fixed and the PHP group is working as fast as they can to fix it. There are a few things folks have suggested like htaccess rules to filter out URL’s that contain dashes, but these tend to break many WordPress sites.

So right now we’re detecting any attack shells that are uploaded using this vulnerability and we will alert you and give you the ability to clean them. We also do our usual checks that will catch a lot of other malicious activity that this vulnerability may allow, like linking to URL’s on the google safe browsing list, uploading known malware, and so on.

Upgrade to 2.0.1 now for improved PHP-CGI protection.

Mark.

May 8, 2012 at 10:11 pm

Jon Brown

said

Thanks Mark! It’s awesome that you guys can respond to stuff like this so quickly.

May 9, 2012 at 1:36 am

mark

said

No problem. We’re trying to find the most effective way to mitigate this attack, so very much appreciate your feedback.

May 9, 2012 at 2:58 am
Viewing 4 posts - 1 through 4 (of 4 total)

The topic ‘PHP-CGI Vulnerability’ is closed to new replies.

About Wordfence

Wordfence is part of Feedjit Inc. based in Seattle Washington in the USA. Our founders are Mark Maunder (CEO) and Kerry Boyte (COO). Feedjit has been providing real-time analytics and real-time ad serving solutions since 2007 and today supports over 700,000 publishers. Our mission with Wordfence is to provide security and peace of mind to WordPress publishers. Please contact us at support@wordfence.com.
Copyright © 2011 to 2012 Wordfence.com. All rights reserved. Please see our Terms of Use & Privacy Policy.