
CVE-2021-41773, Apache HTTP Server 2.4.49의 경로 탐색 및 RCE 취약점을 테스트하기 위한 httpd.conf 설정과 함께 Docker 기반으로 재현한 것입니다.
apache http server 취약점 (2.4.49에서만 동작함)
httpd.conf
...
<IfModule mpm_prefork_module>
LoadModule cgi_module modules/mod_cgi.so # 이 줄의 주석을 해제하세요
</IfModule>
...
<Directory />
AllowOverride none
# Require all denied # 이 줄을 주석 처리하거나 `Require all granted`로 설정하세요
</Directory>
...