CVE-1999-1053

Apache <1.3.9 - RCE

Title source: llm

Description

guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remote attackers to execute arbitrary commands when guestbook.pl is run on Apache 1.3.9 and possibly other versions, since Apache allows other closing sequences besides "-->".

Exploits (4)

nomisec WORKING POC 1 stars
by siunam321 · poc
https://github.com/siunam321/CVE-1999-1053-PoC
exploitdb WORKING POC VERIFIED
by patrick · rubywebappscgi
https://www.exploit-db.com/exploits/9907
exploitdb WORKING POC VERIFIED
by Metasploit · rubywebappscgi
https://www.exploit-db.com/exploits/16914
metasploit WORKING POC EXCELLENT
by aushack · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/webapp/guestbook_ssi_exec.rb

Scores

EPSS 0.9068
EPSS Percentile 99.6%

Classification

Status draft

Affected Products (2)

apache/http_server
matt_wright/matt_wright_guestbook

Timeline

Published Sep 13, 1999
Tracked Since Feb 18, 2026