{"id":536533,"date":"2024-06-11T13:39:21","date_gmt":"2024-06-11T12:39:21","guid":{"rendered":"https:\/\/www.stormshield.com\/?p=536533"},"modified":"2024-06-11T14:39:37","modified_gmt":"2024-06-11T13:39:37","slug":"alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield","status":"publish","type":"post","link":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/","title":{"rendered":"Alerte de s\u00e9curit\u00e9 PHP CVE-2024-4577 : la r\u00e9ponse des produits Stormshield"},"content":{"rendered":"<p><strong>Une vuln\u00e9rabilit\u00e9 critique impactant le service PHP-CGI des serveurs Windows vient d\u2019\u00eatre publi\u00e9e sous la r\u00e9f\u00e9rence CVE-2024-4577. Celle-ci obtient un score CVSS v3.1 de 9.8. Il convient de lui porter une attention particuli\u00e8re car de nombreuses preuves de concept sont disponibles publiquement et font d\u00e9j\u00e0 l\u2019objet d\u2019exploitations actives.<\/strong><\/p>\n<p>Il est important de noter que cette vuln\u00e9rabilit\u00e9 <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2024-4577\" target=\"_blank\" rel=\"noopener\">CVE-2024-4577<\/a> existe depuis 2012 et qu\u2019elle a \u00e9t\u00e9 introduite lors de la correction de la vuln\u00e9rabilit\u00e9 <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/cve-2012-1823\" target=\"_blank\" rel=\"noopener\">CVE-2012-1823<\/a>.<\/p>\n<p>&nbsp;<\/p>\n<h2>Les d\u00e9tails techniques de la vuln\u00e9rabilit\u00e9 PHP-CGI<\/h2>\n<p>La CVE-2024-4577 permet \u00e0 un attaquant l\u2019ex\u00e9cution de code arbitraire \u00e0 distance sur les serveurs Windows h\u00e9bergeant le syst\u00e8me PHP, via le moteur de script PHP-CGI. Il est \u00e0 noter que cette vuln\u00e9rabilit\u00e9 peut \u00eatre exploit\u00e9e m\u00eame si PHP n\u2019est pas configur\u00e9 en mode CGI. Ce module PHP-CGI est pr\u00e9sent sur les serveurs web IIS et \u00e9galement sur le serveur XAMPP.<\/p>\n<p>Les versions impact\u00e9es sont les suivantes\u00a0:<\/p>\n<ul>\n<li>1.x ant\u00e9rieures \u00e0 8.1.29,<\/li>\n<li>2.x ant\u00e9rieures \u00e0 8.2.20,<\/li>\n<li>3.x ant\u00e9rieures \u00e0 8.3.8,<\/li>\n<li>x \u00e0 8.0.x (versions obsol\u00e8tes).<\/li>\n<\/ul>\n<p>Cette vuln\u00e9rabilit\u00e9 est exploitable via la simple insertion d\u2019un caract\u00e8re \u00ab\u00a0Soft Hyphen\u00a0\u00bb dans les param\u00e8tres d\u2019un URL. Celui-ci est converti automatiquement en trait d\u2019union classique via la fonctionnalit\u00e9 \u00ab\u00a0Best-Fit\u00a0\u00bb de Windows. Mais cela permet de contourner un m\u00e9canisme de v\u00e9rification de PHP, et ainsi lui faire ex\u00e9cuter du code via l\u2019ex\u00e9cutable \u00ab\u00a0php.exe\u00a0\u00bb.<\/p>\n<p>Il est \u00e0 noter qu\u2019\u00e0 l\u2019heure actuelle seuls les OS Windows localis\u00e9s en japonais, chinois traditionnel et simplifi\u00e9 ont \u00e9t\u00e9 confirm\u00e9s vuln\u00e9rables. Pour le reste, l\u2019incertitude demeure. Mais des tentatives d\u2019exploitations ont d\u00e9j\u00e0 \u00e9t\u00e9 rep\u00e9r\u00e9es partout dans le monde.<\/p>\n<p>&nbsp;<\/p>\n<h2>La mod\u00e9lisation de l'attaque avec MITRE ATT&amp;CK<\/h2>\n<h3>MITRE ATT&amp;CK<\/h3>\n<ul>\n<li>T1190 (Exploit Public-Facing Application)<\/li>\n<\/ul>\n<h3>IoC<\/h3>\n<p>L\u2019attaque peut \u00eatre rep\u00e9r\u00e9e par la pr\u00e9sence d\u2019un caract\u00e8re \u00ab\u00a0Soft-Hyphen\u00a0\u00bb (encodage %AD) dans l\u2019URL d\u2019une requ\u00eate HTTP. Par exemple\u00a0:<\/p>\n<ul>\n<li><code><em>https:\/\/example.com\/test.php?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp:\/\/input<\/em><\/code><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h2>Les moyens de protections avec Stormshield Network Security face \u00e0 la vuln\u00e9rabilit\u00e9 PHP-CGI<\/h2>\n<h3>Protection face \u00e0 la CVE-2024-4577<\/h3>\n<p>Les firewalls Stormshield Network Security (SNS) d\u00e9tectent et bloquent par d\u00e9faut l\u2019exploitation de la CVE-2024-4577 via leur analyse protocolaire HTTP de l\u2019IPS. Celle-ci n\u00e9cessite \u00e9galement que le flux SSL soit d\u00e9chiffr\u00e9 pour les requ\u00eates HTTPS\u00a0:<\/p>\n<ul>\n<li><strong>http:82 : Bad UTF-8 encoding in URL<\/strong><\/li>\n<\/ul>\n<table class=\" aligncenter\" width=\"623\">\n<tbody>\n<tr>\n<td style=\"text-align: center;\" width=\"312\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-227874\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/indice.png\" alt=\"\" width=\"135\" height=\"101\" \/><\/p>\n<p><em>Indice de confiance de la protection propos\u00e9e par Stormshield<\/em><\/td>\n<td width=\"312\">\n<p style=\"text-align: center;\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-227874\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/indice.png\" alt=\"\" width=\"135\" height=\"101\" \/><\/p>\n<p style=\"text-align: center;\"><em>Indice de confiance de l\u2019absence de faux positif<\/em><\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3>Recommandations face \u00e0 la vuln\u00e9rabilit\u00e9 PHP-CGI<\/h3>\n<p>Il est ainsi fortement recommand\u00e9 de mettre \u00e0 jour PHP (ou son service exploitant) vers une des versions suivantes ou ult\u00e9rieures\u00a0:<\/p>\n<ul>\n<li>8.1.29<\/li>\n<li>8.2.20<\/li>\n<li>8.3.8<\/li>\n<\/ul>\n<p>Le bulletin d\u2019alerte est disponible ici : <a href=\"https:\/\/www.openwall.com\/lists\/oss-security\/2024\/06\/07\/1\" target=\"_blank\" rel=\"noopener\">openwall.com\/lists\/oss-security\/2024\/06\/07\/1<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Une vuln\u00e9rabilit\u00e9 critique impactant le service PHP-CGI des serveurs Windows vient d\u2019\u00eatre publi\u00e9e sous la r\u00e9f\u00e9rence CVE-2024-4577. Celle-ci obtient un score CVSS v3.1 de 9.8. Il convient de lui porter une attention particuli\u00e8re car de nombreuses preuves de concept sont disponibles publiquement et font d\u00e9j\u00e0&#8230;<\/p>\n","protected":false},"author":83,"featured_media":190179,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1503],"tags":[4368],"business_size":[],"industry":[],"help_mefind":[],"features":[],"type_security":[],"maintenance":[],"offer":[],"administration_tools":[],"cloud_offers":[],"listing_product":[],"class_list":["post-536533","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-alertes","tag-la-cybersecurite-par-stormshield"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Vuln\u00e9rabilit\u00e9 PHP-CGI des serveurs Windows | CVE-2024-4577<\/title>\n<meta name=\"description\" content=\"Alerte de s\u00e9curit\u00e9 sur le service PHP-CGI des serveurs Windows et moyens de protection Stormshield Network Security face \u00e0 la CVE-2024-4577.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Vuln\u00e9rabilit\u00e9 PHP-CGI des serveurs Windows | CVE-2024-4577\" \/>\n<meta property=\"og:description\" content=\"Alerte de s\u00e9curit\u00e9 sur le service PHP-CGI des serveurs Windows et moyens de protection Stormshield Network Security face \u00e0 la CVE-2024-4577.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/\" \/>\n<meta property=\"og:site_name\" content=\"Stormshield\" \/>\n<meta property=\"article:published_time\" content=\"2024-06-11T12:39:21+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-06-11T13:39:37+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"1422\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Stormshield Customer Security Lab\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Stormshield\" \/>\n<meta name=\"twitter:site\" content=\"@Stormshield\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"Stormshield Customer Security Lab\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/\"},\"author\":{\"name\":\"Stormshield Customer Security Lab\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/a05f467cec789f90c8a355b178743249\"},\"headline\":\"Alerte de s\u00e9curit\u00e9 PHP CVE-2024-4577 : la r\u00e9ponse des produits Stormshield\",\"datePublished\":\"2024-06-11T12:39:21+00:00\",\"dateModified\":\"2024-06-11T13:39:37+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/\"},\"wordCount\":483,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"keywords\":[\"La cybers\u00e9curit\u00e9 - par Stormshield\"],\"articleSection\":[\"Alertes\"],\"inLanguage\":\"fr-FR\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/\",\"name\":\"Vuln\u00e9rabilit\u00e9 PHP-CGI des serveurs Windows | CVE-2024-4577\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"datePublished\":\"2024-06-11T12:39:21+00:00\",\"dateModified\":\"2024-06-11T13:39:37+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/a05f467cec789f90c8a355b178743249\"},\"description\":\"Alerte de s\u00e9curit\u00e9 sur le service PHP-CGI des serveurs Windows et moyens de protection Stormshield Network Security face \u00e0 la CVE-2024-4577.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"contentUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"width\":2560,\"height\":1422},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Alerte de s\u00e9curit\u00e9 PHP CVE-2024-4577 : la r\u00e9ponse des produits Stormshield\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#website\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/\",\"name\":\"Stormshield\",\"description\":\"Stormshield\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/a05f467cec789f90c8a355b178743249\",\"name\":\"Stormshield Customer Security Lab\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/46b9416c400398c1a9fc878c7a35bd2ae4f79caeeda138facd5cb65a4ab91c5d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/46b9416c400398c1a9fc878c7a35bd2ae4f79caeeda138facd5cb65a4ab91c5d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/46b9416c400398c1a9fc878c7a35bd2ae4f79caeeda138facd5cb65a4ab91c5d?s=96&d=mm&r=g\",\"caption\":\"Stormshield Customer Security Lab\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Vuln\u00e9rabilit\u00e9 PHP-CGI des serveurs Windows | CVE-2024-4577","description":"Alerte de s\u00e9curit\u00e9 sur le service PHP-CGI des serveurs Windows et moyens de protection Stormshield Network Security face \u00e0 la CVE-2024-4577.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/","og_locale":"fr_FR","og_type":"article","og_title":"Vuln\u00e9rabilit\u00e9 PHP-CGI des serveurs Windows | CVE-2024-4577","og_description":"Alerte de s\u00e9curit\u00e9 sur le service PHP-CGI des serveurs Windows et moyens de protection Stormshield Network Security face \u00e0 la CVE-2024-4577.","og_url":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/","og_site_name":"Stormshield","article_published_time":"2024-06-11T12:39:21+00:00","article_modified_time":"2024-06-11T13:39:37+00:00","og_image":[{"width":2560,"height":1422,"url":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","type":"image\/jpeg"}],"author":"Stormshield Customer Security Lab","twitter_card":"summary_large_image","twitter_creator":"@Stormshield","twitter_site":"@Stormshield","twitter_misc":{"\u00c9crit par":"Stormshield Customer Security Lab","Dur\u00e9e de lecture estim\u00e9e":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#article","isPartOf":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/"},"author":{"name":"Stormshield Customer Security Lab","@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/a05f467cec789f90c8a355b178743249"},"headline":"Alerte de s\u00e9curit\u00e9 PHP CVE-2024-4577 : la r\u00e9ponse des produits Stormshield","datePublished":"2024-06-11T12:39:21+00:00","dateModified":"2024-06-11T13:39:37+00:00","mainEntityOfPage":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/"},"wordCount":483,"commentCount":0,"image":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#primaryimage"},"thumbnailUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","keywords":["La cybers\u00e9curit\u00e9 - par Stormshield"],"articleSection":["Alertes"],"inLanguage":"fr-FR"},{"@type":"WebPage","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/","url":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/","name":"Vuln\u00e9rabilit\u00e9 PHP-CGI des serveurs Windows | CVE-2024-4577","isPartOf":{"@id":"https:\/\/www.stormshield.com\/fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#primaryimage"},"image":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#primaryimage"},"thumbnailUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","datePublished":"2024-06-11T12:39:21+00:00","dateModified":"2024-06-11T13:39:37+00:00","author":{"@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/a05f467cec789f90c8a355b178743249"},"description":"Alerte de s\u00e9curit\u00e9 sur le service PHP-CGI des serveurs Windows et moyens de protection Stormshield Network Security face \u00e0 la CVE-2024-4577.","breadcrumb":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/"]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#primaryimage","url":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","contentUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","width":2560,"height":1422},{"@type":"BreadcrumbList","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-php-cve-2024-4577-reponse-des-produits-stormshield\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.stormshield.com\/fr\/"},{"@type":"ListItem","position":2,"name":"Alerte de s\u00e9curit\u00e9 PHP CVE-2024-4577 : la r\u00e9ponse des produits Stormshield"}]},{"@type":"WebSite","@id":"https:\/\/www.stormshield.com\/fr\/#website","url":"https:\/\/www.stormshield.com\/fr\/","name":"Stormshield","description":"Stormshield","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.stormshield.com\/fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Person","@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/a05f467cec789f90c8a355b178743249","name":"Stormshield Customer Security Lab","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/secure.gravatar.com\/avatar\/46b9416c400398c1a9fc878c7a35bd2ae4f79caeeda138facd5cb65a4ab91c5d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/46b9416c400398c1a9fc878c7a35bd2ae4f79caeeda138facd5cb65a4ab91c5d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/46b9416c400398c1a9fc878c7a35bd2ae4f79caeeda138facd5cb65a4ab91c5d?s=96&d=mm&r=g","caption":"Stormshield Customer Security Lab"}}]}},"_links":{"self":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/536533","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/users\/83"}],"replies":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/comments?post=536533"}],"version-history":[{"count":3,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/536533\/revisions"}],"predecessor-version":[{"id":536539,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/536533\/revisions\/536539"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/media\/190179"}],"wp:attachment":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/media?parent=536533"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/categories?post=536533"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/tags?post=536533"},{"taxonomy":"business_size","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/business_size?post=536533"},{"taxonomy":"industry","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/industry?post=536533"},{"taxonomy":"help_mefind","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/help_mefind?post=536533"},{"taxonomy":"features","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/features?post=536533"},{"taxonomy":"type_security","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/type_security?post=536533"},{"taxonomy":"maintenance","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/maintenance?post=536533"},{"taxonomy":"offer","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/offer?post=536533"},{"taxonomy":"administration_tools","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/administration_tools?post=536533"},{"taxonomy":"cloud_offers","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/cloud_offers?post=536533"},{"taxonomy":"listing_product","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/listing_product?post=536533"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}