当前位置:网站首页>百度杯”CTF比赛 2017 二月场,Web:爆破-2
百度杯”CTF比赛 2017 二月场,Web:爆破-2
2022-07-05 13:00:00 【Part 02】
题目内容:
flag不在变量中。
<?php
include "flag.php";
$a = @$_REQUEST['hello'];
eval( "var_dump($a);");
show_source(__FILE__);?hello=file('flag.php')

file 命令直接可以读出来
file_get_contents 也行,但在源码里

边栏推荐
- CF:A. The Third Three Number Problem【关于我是位运算垃圾这个事情】
- Small case of function transfer parameters
- Put functions in modules
- leetcode:221. 最大正方形【dp状态转移的精髓】
- SAP SEGW 事物码里的 ABAP Editor
- SAP UI5 DynamicPage 控件介紹
- 蜀天梦图×微言科技丨达梦图数据库朋友圈+1
- go 数组与切片
- It's too convenient. You can complete the code release and approval by nailing it!
- 跨平台(32bit和64bit)的 printf 格式符 %lld 输出64位的解决方式
猜你喜欢

Solve Unicode decodeerror: 'GBK' codec can't decode byte 0xa2 in position 107

Association modeling method in SAP segw transaction code

CF:A. The Third Three Number Problem【关于我是位运算垃圾这个事情】

Navigation property and entityset usage in SAP segw transaction code

Cf:a. the third three number problem

Hiengine: comparable to the local cloud native memory database engine

Datapipeline was selected into the 2022 digital intelligence atlas and database development report of China Academy of communications and communications

Concurrent performance test of SAP Spartacus with JMeter

A deep long article on the simplification and acceleration of join operation

山东大学暑期实训一20220620
随机推荐
Association modeling method in SAP segw transaction code
解决 UnicodeDecodeError: ‘gbk‘ codec can‘t decode byte 0xa2 in position 107
Flutter InkWell & Ink组件
一文详解ASCII码,Unicode与utf-8
简单上手的页面请求和解析案例
PyCharm安装第三方库图解
自然语言处理从小白到精通(四):用机器学习做中文邮件内容分类
APICloud Studio3 API管理与调试使用教程
go 数组与切片
MySQL giant pit: update updates should be judged with caution by affecting the number of rows!!!
DataPipeline双料入选中国信通院2022数智化图谱、数据库发展报告
mysql拆分字符串做条件查询
峰会回顾|保旺达-合规和安全双驱动的数据安全整体防护体系
Natural language processing series (I) introduction overview
DataPipeline双料入选中国信通院2022数智化图谱、数据库发展报告
#yyds干货盘点# 解决名企真题:搬圆桌
Binder通信过程及ServiceManager创建过程
百日完成国产数据库opengausss的开源任务--openGuass极简版3.0.0安装教程
Get to know linkerd project for the first time
Introduction aux contrôles de la page dynamique SAP ui5