add PHP 8.1.0-dev Zerodium Backdoor vulnerabilities

This commit is contained in:
gaopeng2 2021-08-05 17:54:27 +08:00
parent 7dd7af4d2f
commit 3315e89123
2 changed files with 9 additions and 0 deletions

Binary file not shown.

After

Width:  |  Height:  |  Size: 1.8 MiB

View File

@ -0,0 +1,9 @@
# PHP 8.1.0-dev Zerodium Backdoor vulnerabilities
PHP 8.1.0-dev is a development version of PHP. The PHP 8.1.0-dev version was implanted with a backdoor on March 28, 2021, but the backdoor was quickly discovered and removed. When the backdoor exists on the server, the attacker can execute arbitrary code by sending the User-Agentt header.
**FOFA query rule**: [header="PHP/8.1.0"](https://fofa.so/result?qbase64=aGVhZGVyPSJQSFAvOC4xLjAi)
# Demo
![](PHP_Zerodium_Backdoor_vulnerabilities.gif)