当前位置:网站首页>uplad_ Labs first three levels
uplad_ Labs first three levels
2022-07-05 13:43:00 【Sex sex ~ ~】
Catalog
Pass_01
Pass_02
Pass_03
The problem solving process
Pass_01
First upload a picture and try , Upload successful
The title says to upload one webshell Get to know webshell
webshell:webshell That is to say asp、php、jsp perhaps cgi etc. Webpage A code execution environment in the form of a file , Mainly used for website management 、 Server management 、 Permission management and other operations . Just upload a code file , Visit through website , Many daily operations can be carried out .
So I want to upload one php Documents of the same type , Upload PHP When you file
Take another look at the tips
The description is the front end js verification
Upload a php The file of , Change the foot code to the one allowed on the title .jpg|.png|.gif Image format , Upload successfully and then burpsuite Carry out the bag . First, find the agent in the settings
Manual use burpsuite Proxy for port
Construct a PHP The file of , Then change the file format to .png, open burpsuite Carry out the bag
Show the inside png Change it to php
Then put the bag d
Pass_02
The second level is still uploaded php File to try
The second level is somewhat similar to the first level , Let's check the source code
Only upload is allowed jpeg/.png/.gif Files of type , Like the first level, first find the agent in the setting , Manual use burpsuite Proxy for port , Upload the allowed file types first , And then with burpsuite Carry out the bag .
Pass_03
Take a look at the source code
The front clearance is only allowed to upload image type files , And the third level is not allowed to upload php Documents of the same type , It is called blacklist verification , Special suffixes . Convert case , No way to remove strings .
Put the document corner code php Change it to php1 Try to find that the upload is successful
边栏推荐
- 个人组件 - 消息提示
- 49. Grouping of alphabetic ectopic words: give you a string array, please combine the alphabetic ectopic words together. You can return a list of results in any order. An alphabetic ectopic word is a
- 这18个网站能让你的页面背景炫酷起来
- 研究生可以不用学英语?只要考研英语或六级分数高!
- asp. Net read TXT file
- 基于微信小程序的订餐系统
- The development of speech recognition app with uni app is simple and fast.
- Could not set property 'ID' of 'class xx' with value 'XX' argument type mismatch solution
- [深度学习论文笔记]使用多模态MR成像分割脑肿瘤的HNF-Netv2
- "Baidu Cup" CTF competition in September, web:upload
猜你喜欢
Could not set property 'ID' of 'class xx' with value 'XX' argument type mismatch solution
stm32逆向入门
记录一下在深度学习-一些bug处理
真正的缓存之王,Google Guava 只是弟弟
Scientific running robot pancakeswap clip robot latest detailed tutorial
Can and can FD
Jetpack Compose入门到精通
redis6主从复制及集群
Aikesheng sqle audit tool successfully completed the evaluation of "SQL quality management platform grading ability" of the Academy of communications and communications
Intranet penetration tool NetApp
随机推荐
Solution to the prompt of could not close zip file during phpword use
redis6主从复制及集群
什么叫做信息安全?包含哪些内容?与网络安全有什么区别?
Solve the problem of "unable to open source file" xx.h "in the custom header file on vs from the source
Win10——轻量级小工具
Introduction to Chapter 8 proof problem of njupt "Xin'an numeral base"
Summit review | baowanda - an integrated data security protection system driven by compliance and security
Zhubo Huangyu: it's really bad not to understand these gold frying skills
面试官灵魂拷问:为什么代码规范要求 SQL 语句不要过多的 join?
Redis6 data type and operation summary
What is a network port
53. 最大子数组和:给你一个整数数组 nums ,请你找出一个具有最大和的连续子数组(子数组最少包含一个元素),返回其最大和。
RK3566添加LED
[MySQL usage Script] catch all MySQL time and date types and related operation functions (3)
The development of speech recognition app with uni app is simple and fast.
Operational research 68 | the latest impact factors in 2022 were officially released. Changes in journals in the field of rapid care
百度杯”CTF比赛 2017 二月场,Web:爆破-2
【云资源】云资源安全管理用什么软件好?为什么?
French scholars: the explicability of counter attack under optimal transmission theory
Datapipeline was selected into the 2022 digital intelligence atlas and database development report of China Academy of communications and communications