Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Un-CGI 1.9 and earlier does not verify that a CGI script has the execution bits set before executing it, which allows remote attackers to execute arbitrary commands by directing Un-CGI to a document that begins with "#!" and the desired program name.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Steve Grimm Un-CGI 执行任意脚本错误
Vulnerability Description
CVE(CAN) ID: CAN-2001-1241 Un-CGI是种免费CGI封装应用程序。其主要用于解析URL输入并提交给CGI应用程序, 可以库方式使用,也可以单独执行。当Un-CGI执行脚本时没有检查相应可执行位是否 设置,结合向服务器写文件的能力,可以执行任意命令。 <* 来源:Khamba Staring (purrcat@edoropolis.org) *>
CVSS Information
N/A
Vulnerability Type
N/A