Exploitation Summary
EIP tracks 1 public exploit for CVE-2001-1586. PoCs published by THRAN.
AI-analyzed exploit summary This exploit leverages a directory traversal vulnerability in SimpleServer:WWW via hex-encoded URLs to upload and execute a malicious binary (ncx99.exe) via TFTP. The PoC demonstrates remote command execution by bypassing URL filtering.
Description
Directory traversal vulnerability in SimpleServer:WWW 1.13 and earlier allows remote attackers to execute arbitrary programs via encoded ../ ("%2E%2E%2F%") sequences in a request to the cgi-bin/ directory, a different vulnerability than CVE-2000-0664.
Exploits (1)
This exploit leverages a directory traversal vulnerability in SimpleServer:WWW via hex-encoded URLs to upload and execute a malicious binary (ncx99.exe) via TFTP. The PoC demonstrates remote command execution by bypassing URL filtering.