← back
CVE-2012-2376observed exploitation

CVE-2012-2376

50Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.

ssvc Actepss 20%
from disclosure to weapon0 days
Published on NVDMay 21
1st PoCMay 11
VulnCheckMay 21
exploitation probability
20%top 3% of all CVEs
observed exploitation
yesVulnCheck
2 public exploit(s)
Buffer overflow in the com_print_typeinfo function in PHP 5.4.3 and earlier on Windows allows remote attackers to execute arbitrary code via crafted arguments that trigger incorrect handling of COM object VARIANT types, as exploited in the wild in May 2012.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.