当前位置:网站首页>ctfshow web4
ctfshow web4
2022-06-12 08:08:00 【hint=flag】
ctfshow web4

打开链接后
提示: <?php include($_GET['url']);?>
可以看出有文件包含漏洞
有include函数
直接穿插命令看日志文件
日志文件在var/log/nginx/access.log目录下
抓包添加一句话木马:
尝试蚁剑连接:
进入更目录找flag
最后在www目录下找到flag
边栏推荐
- KAtex problem of vscade: parseerror: KAtex parse error: can't use function '$' in math mode at position
- Mathematical Essays: Notes on the angle between vectors in high dimensional space
- 2.1 linked list - remove linked list elements (leetcode 203)
- Numpy generates row vectors and column vectors (1024 water medal text)
- Principes et exemples de tâches OpenMP
- Mathematical knowledge - matrix - matrix / vector derivation
- Compiling principle on computer -- functional drawing language (IV): semantic analyzer
- Model Trick | CVPR 2022 Oral - Stochastic Backpropagation A Memory Efficient Strategy
- C语言printf输出整型格式符简单总结
- N-order nonzero matrix AB, matrix ab=0, then the rank of a and B is less than n
猜你喜欢

记录谷粒商城踩坑(一)

数据库基础——规范化、关系模式

Vision Transformer | CVPR 2022 - Vision Transformer with Deformable Attention

Architecture and performance analysis of convolutional neural network

智能制造的时代,企业如何进行数字化转型

模型压缩 | TIP 2022 - 蒸馏位置自适应:Spot-adaptive Knowledge Distillation

Servlet

Pytorch practice: predicting article reading based on pytorch

(P21-P24)统一的数据初始化方式:列表初始化、使用初始化列表初始化非聚合类型的对象、initializer_lisy模板类的使用

Discrete chapter I
随机推荐
El expression and JSTL
只把MES当做工具?看来你错过了最重要的东西
Face recognition using BP neural network of NNET in R language
Summary of structured slam ideas and research process
记录谷粒商城踩坑(一)
Introduction to coco dataset
MATLAB image processing - Otsu threshold segmentation (with code)
FPGA to flip video up and down (SRAM is61wv102416bll)
Fundamentals of Mathematics - Taylor Theorem
Symfony 2: multiple and dynamic database connections
(P21-P24)统一的数据初始化方式:列表初始化、使用初始化列表初始化非聚合类型的对象、initializer_lisy模板类的使用
Leetcode notes: Weekly contest 279
Compiling principle on computer -- functional drawing language (I)
DUF:Deep Video Super-Resolution Network Using Dynamic Upsampling Filters ... Reading notes
CONDA reports an error when creating a virtual environment, and the problem is solved
2.1 链表——移除链表元素(Leetcode 203)
(P25-P26)基于非范围的for循环、基于范围的for循环需要注意的3个细节
N-order nonzero matrix AB, matrix ab=0, then the rank of a and B is less than n
vm虛擬機中使用NAT模式特別說明
Discrete chapter I