# CVE-2021-41773
apache http server vulnerability (only works 2.4.49)
## requirement settings
httpd.conf
```
...
<IfModule mpm_prefork_module>
LoadModule cgi_module modules/mod_cgi.so # uncomment this line
</IfModule>
...
<Directory />
AllowOverride none
# Require all denied # comment out this line or set `Require all granted`
</Directory>
...
```
## References
- https://attackerkb.com/topics/1RltOPCYqE/cve-2021-41773/rapid7-analysis
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view