Files
CVEs-PoC/2013/CVE-2013-10039.md
T
2025-09-29 21:09:30 +02:00

925 B

CVE-2013-10039

Description

A command injection vulnerability exists in GestioIP 3.0 commit ac67be and earlier in ip_checkhost.cgi. Crafted input to the 'ip' parameter allows attackers to execute arbitrary shell commands on the server via embedded base64-encoded payloads. Authentication may be required depending on deployment configuration.

POC

Reference

Github