Access logs errors "/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" when using Nginx
ludy-dev/PHPUnit_eval-stdin_RCE. This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
There is an extra reason to remove the phpunit files of the 1.0.5 library: /sites/all/libraries/mailchimp/vendor/phpunit/phpunit/src/Util/PHP/alexusMailer_v2.0.php is actively being used to send spam from your server. Our server sent out 8000+ spammails yesterday.
panel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Not Found
Ошибки журнала доступа "/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" при использовании Nginx без PHP.
...использовать в популярных CMS (Content Management Systems), такими как WordPress, Drupal и Prestashop, а также
...pig.php pop.php gank.php.PhP accesson0.php и каталог wp-admin с текстовыми файлами
PHP может быть запущен как модуль веб-сервера, как Common Gateway Interface (CGI) Общий
Ошибки журналов доступа "/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" при использовании Nginx без PHP. Я использую Nginx в качестве веб-сервера и не устанавливал PHP и никаких модулей на маши��ы.
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers to execute arbitrary PHP code via HTTP POST data beginning with a "<?php " substring, as demonstrated by an attack on a site with an exposed