Exploitation Summary
EIP tracks 1 public exploit for CVE-1999-0885. PoCs published by Kerb.
AI-analyzed exploit summary This exploit targets a directory traversal vulnerability in Alibaba WebServer 2.0, allowing an attacker to overwrite arbitrary files on the server by sending a crafted HTTP GET request to a vulnerable CGI script. The PoC demonstrates file overwrite by appending a pipe command to echo arbitrary content into a specified file path.
Description
Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL.
Exploits (1)
This exploit targets a directory traversal vulnerability in Alibaba WebServer 2.0, allowing an attacker to overwrite arbitrary files on the server by sending a crafted HTTP GET request to a vulnerable CGI script. The PoC demonstrates file overwrite by appending a pipe command to echo arbitrary content into a specified file path.