Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2019-11043

PHP | FastCGI Process Manager (FPM)Added 2022-03-25Remediation Deadline 2022-04-15Active Ransomware Campaign

PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability

In some versions of PHP in certain configurations of FPM setup, it is possible to cause FPM module to write past allocated buffers allowing the possibility of remote code execution.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-120

References