HTTP RULE(RULE ID:336864)

Rule General Information
Release Date: 2022-07-29
Rule Name: PHP 8.1.0 dev Backdoor Remote Code Execution Vulnerability
Severity: Critical
CVE ID:
Rule Protection Details
Description: PHP is a popular server-side scripting language widely used in web development. The PHP 8.1.0-dev version was backdoored on March 28, 2021, allowing attackers to execute arbitrary code by sending the User-Agentt header.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.