CVE-2001-0838

Network Solutions Rwhoisd <1.5.x - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2001-0838. PoCs published by CowPower.

AI-analyzed exploit summary This exploit targets a format string vulnerability in RWhoisd (CVE-2001-0838) by sending maliciously crafted input to the '-soa' directive, allowing arbitrary code execution. It includes shellcode for multiple platforms and attempts to spawn a shell upon successful exploitation.

Description

Format string vulnerability in Network Solutions Rwhoisd 1.5.x allows remote attackers to execute arbitrary code via format string specifiers in the -soa command.

Exploits (1)

exploitdb WORKING POC VERIFIED
by CowPower · cremoteunix
https://www.exploit-db.com/exploits/21128

This exploit targets a format string vulnerability in RWhoisd (CVE-2001-0838) by sending maliciously crafted input to the '-soa' directive, allowing arbitrary code execution. It includes shellcode for multiple platforms and attempts to spawn a shell upon successful exploitation.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: RWhoisd V-1.5.x
No auth needed
Prerequisites: Network access to the RWhoisd service on port 4321 · Target system running a vulnerable version of RWhoisd
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=100402652724815&w=2

Scores

EPSS 0.0695
EPSS Percentile 93.3%

Details

Status published
Products (1)
network_solutions/rwhoisd 1.5.x
Published Dec 06, 2001
Tracked Since Feb 18, 2026