echo "<?php echo 2+2;" | php eval-stdin.php
intitle:"index of" "vendor/phpunit/phpunit/src/Util/PHP" intitle:"index of" "eval-stdin.php" index of vendor phpunit phpunit src util php evalstdinphp
Your server configuration is too permissive. echo "<
<?php // vendor/phpunit/phpunit/src/Util/PHP/EvalStdin.php ?php echo 2+2
: This is a read-only stream that allows a script to read raw data from the request body. : This function evaluates a string as PHP code.
/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php refers to a critical Remote Code Execution (RCE) vulnerability (tracked as CVE-2017-9841