CVE-1999-1053

Apache <1.3.9 - RCE

Title source: llm

Description

guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remote attackers to execute arbitrary commands when guestbook.pl is run on Apache 1.3.9 and possibly other versions, since Apache allows other closing sequences besides "-->".

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubywebappscgi
https://www.exploit-db.com/exploits/16914
exploitdb WORKING POC VERIFIED
by patrick · rubywebappscgi
https://www.exploit-db.com/exploits/9907
nomisec WORKING POC 1 stars
by siunam321 · poc
https://github.com/siunam321/CVE-1999-1053-PoC
metasploit WORKING POC EXCELLENT
by aushack · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/webapp/guestbook_ssi_exec.rb

Scores

EPSS 0.9068
EPSS Percentile 99.6%

Details

Status published
Products (2)
apache/http_server 1.3.9
matt_wright/matt_wright_guestbook 2.3
Published Sep 13, 1999
Tracked Since Feb 18, 2026