CVE-2009-1361

GScripts.net DNS Tools - Remote Command Execution via dig.php Host Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-1361.

AI-analyzed exploit summary The exploit demonstrates a command injection vulnerability in PHP Digger's dig.php via the 'ns' parameter. The vulnerable code uses unsanitized user input in a system() call, allowing command execution through command chaining with ||.

Description

dig.php in GScripts.net DNS Tools allows remote attackers to execute arbitrary commands via shell metacharacters in the host parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (1)

exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/8454

The exploit demonstrates a command injection vulnerability in PHP Digger's dig.php via the 'ns' parameter. The vulnerable code uses unsanitized user input in a system() call, allowing command execution through command chaining with ||.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: DNS Tools (PHP Digger)
No auth needed
Prerequisites: Access to the vulnerable dig.php endpoint
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (1)

Core 1
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/34773

Scores

EPSS 0.0391
EPSS Percentile 88.9%

Details

CWE
CWE-20
Status published
Products (1)
gscripts/dns_tools
Published Apr 22, 2009
Tracked Since Feb 18, 2026