CWE-553: Command Shell in Externally Accessible Directory
Export to Word
Description
A possible shell file exists in /cgi-bin/ or other accessible directories. This is extremely dangerous and can be used by an attacker to execute commands on the web server.
Extended Description
N/A
ThreatScore
Threat Mapped score: 0.0
Industry: Finiancial
Threat priority: Unclassified
Observed Examples (CVEs)
No observed examples available.
Related Attack Patterns (CAPEC)
Attack TTPs
Malware
APTs (Intrusion Sets)
Modes of Introduction
Phase
Note
Implementation
N/A
Operation
N/A
Common Consequences
Impact: Execute Unauthorized Code or Commands — Notes:
Potential Mitigations
Installation : Remove any Shells accessible under the web root folder and children directories. (N/A)
Applicable Platforms
Demonstrative Examples
N/A
Notes
← Back to CWE list
© BrownCoat Threat Intelligence Platform | 2025 Steve Gray — You Can’t Take the Sky from Me