漏洞描述 CGISCRIPT.NET csGuestbook 1.0的csGuestbook.cgi中存在代码执行漏洞。远程攻击者可以通过setup参数(由Perl eval函数来处理)执行任意Perl代码。
相关漏洞推荐 Atlassian Confluence /json/setup-restore.action 文件上传漏洞(CVE-2023-22518) POC phpmyadmin-setup-deserialization: Phpmyadmin Setup Deserialization POC phpmyadmin-setup: Publicly Accessible Phpmyadmin Setup POC struts-debug-mode: Apache Struts setup in Debug-Mode POC fusionauth-admin-setup: FusionAuth Exposed Admin Setup POC connectwise-setup: ConnectWise Setup Wizard - Exposure POC cubebackup-setup-installer: CubeBackup Setup Page - Exposure POC jira-setup: Atlassian JIRA Setup - Installer POC mura-cms-setup-installer: Mura CMS Setup Page - Exposure POC openemr-setup-installer: OpenEMR Setup Installation Page - Exposure POC openfire-setup: Openfire Setup - Exposure POC setup-github-enterprise: Setup GitHub Enterprise - Detect POC zenphoto-setup: Zenphoto <1.5 Installer - Detect