当前位置:网站首页>ctfshow web3
ctfshow web3
2022-06-12 08:08:00 【hint=flag】
ctfshow web3
继续ctfshow刷题
打开链接:
给了一串php代码: <?php include($_GET['url']);?>
有include函数发送get的请求
这题是用php伪协议php://input
或者bp抓包改也行:
回显
构造
回显flag
边栏推荐
- OpenMP task 原理與實例
- The pit of FANUC machine tool networking
- 企业为什么要实施MES?具体操作流程有哪些?
- Symfony 2: multiple and dynamic database connections
- Database connection pool and dbutils tool
- Compiling principle on computer -- function drawing language (III): parser
- Compiling principle on computer -- functional drawing language (V): compiler and interpreter
- Ten important properties of determinant
- Leetcode notes: Weekly contest 279
- 只把MES当做工具?看来你错过了最重要的东西
猜你喜欢

802.11 protocol: wireless LAN protocol

C # hide the keyboard input on the console (the input content is not displayed on the window)

Servlet advanced

Mathematical knowledge - derivation - Basic derivation knowledge

System service configuration service - detailed version

visual studio2019的asp.net项目添加日志功能

Explanation and explanation on the situation that the volume GPU util (GPU utilization) is very low and the memory ueage (memory occupation) is very high during the training of pytoch

Discrete chapter I

PPP agreement

KAtex problem of vscade: parseerror: KAtex parse error: can't use function '$' in math mode at position
随机推荐
(P33-P35)lambda表达式语法,lambda表达式注意事项,lambda表达式本质
Prediction of COVID-19 by RNN network
模型压缩 | TIP 2022 - 蒸馏位置自适应:Spot-adaptive Knowledge Distillation
企业为什么要实施MES?具体操作流程有哪些?
MES帮助企业智能化改造,提高企业生产透明度
N-order nonzero matrix AB, matrix ab=0, then the rank of a and B is less than n
Visual studio code batch comment and uncomment
Pytorch profiler with tensorboard.
工厂的生产效益,MES系统如何提供?
DUF:Deep Video Super-Resolution Network Using Dynamic Upsampling Filters ... Reading notes
Mathematical Essays: Notes on the angle between vectors in high dimensional space
2.1 linked list - remove linked list elements (leetcode 203)
从AC5到AC6转型之路(1)——补救和准备
Mathematical knowledge - derivation - Basic derivation knowledge
Parameter estimation of Weibull distribution
KAtex problem of vscade: parseerror: KAtex parse error: can't use function '$' in math mode at position
Group planning chapter I
计组第一章
Ceres optimizer usage (self use)
How SQLite limits the total number of data in a table