logo

Shellshock DHCP RCE Proof of Concept

ID: 24c5bd0a-fa38-5173-a8c4-aebc2f873a6b

STIX ID: report--24c5bd0a-fa38-5173-a8c4-aebc2f873a6b

Feed Name: TrustedSec blog

Threat Score
70/100

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

This document is a proof-of-concept showing how the Bash 'Shellshock' vulnerability can be exploited through DHCP option 114 by inserting a payload such as "() { ignored;}; echo 'foo'" into DHCP string values; when clients renew DHCP leases and run hook scripts (often as root), the injected command may execute.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.