I have developed a POC of CVE-2021-41773 , RCE + cgi-bin path traversal
TESTED ON APACHE2 2.4.49
You can pulled vuln Apache2 2.4.49 directly from Docker
$ sudo docker pull blueteamsteve/cve-2021-41773:no-cgid
$ sudo docker run -dit -p 80:80 blueteamsteve/cve-2021-41773:no-cgid
- gnome-terminal
TO Download it:
- sudo apt-get install gnome-terminal
$ git clone https://github.com/MazX0p/CVE-2021-41773.git
$ cd CVE-2021-41773
$ bash CVE-2021-41773.sh
Name | README |
---|---|
CVE | CVE |
ME! |
MIT
Free Software, Hell Yeah!