CVE-1999-0233
Internet Information Services 1.0 - Remote Command Execution via .bat or .cmd Files
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-1999-0233. PoCs published by anonymous.
AI-analyzed exploit summary This is a writeup describing a remote command execution vulnerability in older web servers (IIS 1.0, Netscape Commerce Server 1.0, etc.) where batch files executed via CGI can be manipulated to run arbitrary commands using the ampersand (&) symbol. The vulnerability allows command injection with web server privileges.
Description
IIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files.
Exploits (1)
This is a writeup describing a remote command execution vulnerability in older web servers (IIS 1.0, Netscape Commerce Server 1.0, etc.) where batch files executed via CGI can be manipulated to run arbitrary commands using the ampersand (&) symbol. The vulnerability allows command injection with web server privileges.