当前位置:网站首页>[buuctf] [actf2020 freshman competition]include
[buuctf] [actf2020 freshman competition]include
2022-06-30 14:23:00 【aoao331198】
There's a question ‘tips’ link , Click on

according to url Medium flag.php And a hint of the title , It should be conceivable that the file contains ,flag stay flag.php in , So I thought of using PHP Fake protocol
structure payload:
?file=php://filter/read=convert.base64-encode/resource=flag.php
So you get the base64 Encrypted content , Just decrypt it

边栏推荐
- PHP multidimensional array sorting
- More than 20 years after Hong Kong's return, Tupu digital twin Hong Kong Zhuhai Macao Bridge has shocked
- [geek challenge 2019] PHP problem solving record
- @component使用案例
- Advanced usage of go language for loop break and continue
- Cost forecast of PMP (BAC, EAC, etc)
- Upgrade composer self update
- Introduction to the construction and development of composer private warehouse
- Problem: wechat developer tool visitor mode cannot use this function
- Initial attack and defense world Misc
猜你喜欢

【科学文献计量】外文文献及中文文献关键词的挖掘与可视化

Geoffreyhinton: my 50 years of in-depth study and Research on mental skills

Optimization of unit test efficiency: why test programs? What are the benefits of testing?

XSS challenge (1-5) more detailed answers

QQ was stolen? The reason is

Getting started with shell Basics
![[scientific research data processing] [practice] frequency analysis chart of category variables, distribution chart of numerical variables and normality test (including lognormal)](/img/5a/eaa845f4332f0b8ee8b6409d6a79e8.png)
[scientific research data processing] [practice] frequency analysis chart of category variables, distribution chart of numerical variables and normality test (including lognormal)

About the problems encountered when using the timer class to stop with a button (why does the QPushButton (for the first time) need to be clicked twice to respond?)

Google Earth engine (GEE) -- converts string to number and applies it to time search (ee.date.fromymd)

Embedded development: five C features that may no longer be prohibited
随机推荐
Calculates the length of the last word in a string, separated by spaces
About the problems encountered when using the timer class to stop with a button (why does the QPushButton (for the first time) need to be clicked twice to respond?)
Error on datetime when importing SQL file from MySQL
Jetpack compose for perfect screen fit
C language & the difference between the address pointed to and the address pointed to by the pointer
Wechat applet realizes map navigation + door-to-door recycling
Initial attack and defense world Misc
numpy 创建空数组 data = np.empty(shape=[1, 64,64,3])
Introduction to the renewal of substrate source code: the pallet alliance is incorporated into the main line,
Uniapp upload image method
Problem: wechat developer tool visitor mode cannot use this function
【Redis 系列】redis 学习十六,redis 字典(map) 及其核心编码结构
Laravel upload error
Details of gets, fgetc, fgets, Getc, getchar, putc, fputc, putchar, puts, fputs functions
Pytorch查看模型参数量和计算量
Getting started with shell Basics
MySQL back to table query optimization
Detailed explanation of the first three passes of upload Labs
Wuenda 2022 machine learning special course evaluation is coming!
KnightCTF WEB