Exploitation Summary
EIP tracks 1 public exploit for CVE-1999-0935. PoCs published by anonymous.
AI-analyzed exploit summary This exploit demonstrates a command injection vulnerability in Classifieds.cgi, a Perl script used for classified ads. By manipulating the 'mailprog' hidden form field, an attacker can execute arbitrary commands on the server with the privileges of the web server.
Description
classifieds.cgi allows remote attackers to execute arbitrary commands by specifying them in a hidden variable in a CGI form.
Exploits (1)
This exploit demonstrates a command injection vulnerability in Classifieds.cgi, a Perl script used for classified ads. By manipulating the 'mailprog' hidden form field, an attacker can execute arbitrary commands on the server with the privileges of the web server.