CVE-2002-1951

GoAhead WebServer 2.1 - Remote Code Execution via Long HTTP GET Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2002-1951. PoCs published by anonymous.

AI-analyzed exploit summary This exploit leverages a buffer overflow vulnerability in GoAhead WebServer by sending a maliciously crafted HTTP request with a long path followed by shellcode. The shellcode is designed to execute arbitrary commands, potentially leading to remote code execution (RCE) with the privileges of the web server process.

Description

Buffer overflow in GoAhead WebServer 2.1 allows remote attackers to execute arbitrary code via a long HTTP GET request with a large number of subdirectories.

Exploits (1)

exploitdb WORKING POC VERIFIED
by anonymous · textremotewindows
https://www.exploit-db.com/exploits/21707

This exploit leverages a buffer overflow vulnerability in GoAhead WebServer by sending a maliciously crafted HTTP request with a long path followed by shellcode. The shellcode is designed to execute arbitrary commands, potentially leading to remote code execution (RCE) with the privileges of the web server process.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: GoAhead WebServer (version not specified)
No auth needed
Prerequisites: Network access to the vulnerable web server · GoAhead WebServer running on the target host
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/81099
Exploit, Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5464

Scores

EPSS 0.0583
EPSS Percentile 92.4%

Details

Status published
Products (1)
goahead_software/goahead_webserver 2.1
Published Dec 31, 2002
Tracked Since Feb 18, 2026