Exploitation Summary
EIP tracks 1 public exploit for CVE-2003-0842. PoCs published by xCrZx.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in mod_gzip (with debug_mode) <= 1.2.26.1a. It uses a crafted HTTP POST request to overwrite the return address and execute shellcode, resulting in a bind shell on port 2003.
Description
Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.
Exploits (1)
This exploit targets a buffer overflow vulnerability in mod_gzip (with debug_mode) <= 1.2.26.1a. It uses a crafted HTTP POST request to overwrite the return address and execute shellcode, resulting in a bind shell on port 2003.