当前位置:网站首页>[ACTF2020 Freshman Competition]Exec 1
[ACTF2020 Freshman Competition]Exec 1
2022-07-29 21:25:00 【Borrow zj article [de]BvxiE】
ping命令
如何在cmd里面ping命令
指令:racert 网址
pinga website and ping -t A URL comes out of the difference,The former is only displayed4组数据.
ipconfig /allDisplay your computer configuration
WiresharkA little bit of use,查找时(过滤)
ping时:ip.addr ==网址 and icmp
directly on the web page:
http and ip.addr == 网址
ip.addr ==网址 and tcp
27个常用的 Linux 命令!ls会列举出当前工作目录的内容(文件或文件夹)
[ACTF2020 新生赛]Exec 1
养成习惯!Just grab a bag!This question does not use tools,whole principle!
127.0.0.1;ls
127.0.0.1;ls /
,列出根目录下的文件127.0.0.1;cat /flag
,cat进行读取
or available from below127.0.0.1;cat ../../../flag
是看wp的,Sort out the knowledge points
1.127.0.0.1;cat index.php
,Find the information inside
isset ()A function is used to determine if a variable is set and not null;换句话说,only if the variable is notnull时才返回true.
2.目录遍历
简单了解一下目录遍历!127.0.0.1;ls ../
127.0.0.1;ls ../../
127.0.0.1;ls ../../../
和127.0.0.1;ls ../../../../
效果一样,So in general as long as there are enough sets!
命令注入
Just to find out this time命令注入符号!
Excerpt from the previous link!
可参考文章:https://blog.csdn.net/m0_47745762/article/details/118932465?ops_request_misc=%257B%2522request%255Fid%2522%253A%2522165848802716782248535320%2522%252C%2522scm%2522%253A%252220140713.130102334…%2522%257D&request_id=165848802716782248535320&biz_id=0&utm_medium=distribute.pc_search_result.none-task-blog-2allsobaiduend~default-1-118932465-null-null.142v33experiment_2_v1,185v2control&utm_term=actf2020%20%E6%96%B0%E7%94%9F%E8%B5%9B%5Dexec%2019&spm=1018.2226.3001.4187
及文章:https://blog.csdn.net/wangyuxiang946/article/details/120995294?ops_request_misc=%257B%2522request%255Fid%2522%253A%2522165848802716782248535320%2522%252C%2522scm%2522%253A%252220140713.130102334…%2522%257D&request_id=165848802716782248535320&biz_id=0&utm_medium=distribute.pc_search_result.none-task-blog-2allsobaiduend~default-2-120995294-null-null.142v33experiment_2_v1,185v2control&utm_term=actf2020%20%E6%96%B0%E7%94%9F%E8%B5%9B%5Dexec%2019&spm=1018.2226.3001.4187
边栏推荐
猜你喜欢
博世集团启动量子数字孪生计划
一道菜撑起百亿估值的太二酸菜鱼,能否迈过食品安全这道坎?
378. 有序矩阵中第 K 小的元素
Private domain growth | Private domain members: 15 case collections from 9 major chain industries
Kubernetes: (4) Common commands
LOG4J Learning
240. 搜索二维矩阵 II
找工作那些事-和表弟的一次聊天
尿素偶联Urea-siRNA Conjugates|Cyclodextrin-siRNA-β-CD环糊精修饰RNA核酸(解析说明)
4D Summary: 38 Knowledge Points of Distributed Systems
随机推荐
[GXYCTF2019]禁止套娃
回归——岭回归
从专业角度分析国内创客教育发展
RNA修饰质谱检测|dextran-siRNA 葡聚糖化学偶联DNA/RNA|siRNA-PLGA聚乳酸-羟基乙酸共聚物修饰核糖核酸
进程间六种通信方式
【数据库】mysql日期格式转换
双功能RGD-TAT修饰DNA纳米胶束|聚苯胺纳米线修饰DNA(PAINW/DNA)
如何让 x == 1 && x == 2 && x == 3 等式成立
Samba服务器配置(什么情况下需要服务器)
Cooler Navigation helps you shop easily in shopping malls without confusion
940. 不同的子序列 II
酷客导航助你商场轻松购物,业务办理不迷茫
JMeter tutorial (a)
[ACTF2020 新生赛]Exec 1
offsetwidth111[通俗易懂]
震荡波病毒原代码(勒索病毒源代码)
从实例学Kettle(一):获取股票行情数据
ESP8266-Arduino programming example-LittleFS and data upload
打破原则!MongoDB 引入 SQL?
【无标题】