Skip to content

Comment on PHP-CGI Vulnerability Exploited in the Wild

Comments

I feel this needs to be stressed again: FastCGI implementations are NOT vulnerable to this bug.

I myself run LigHTTPD and PHP through FastCGI, and this was worrying me a lot, until someone pointed me to the Eindbazen site which stated this.

(BTW: Eindbazen is Dutch for "Final boss" in a video game context.)

Isn't FastCGI not really CGI?

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.