|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 117
Members: 0
Total: 117
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
|
yes i do see the error message
i now understand about uploading the null byte
but i still don't understand the next step
what is this line /../../test? is it the path / folder of the file?
how can ... |
|
|
|
|
You can find many tutorials about exploiting LFI via "/proc/self/environ" and uploaded gif/jpg pictures, for example:
https://bechtsoudis.com/hacking/php-code-into-jpeg-metadata-from-hide-to-unhide ... |
|
|
|
|
http://www.waraxe.us/content-86.html
i have some questions which confuses me
i have some questions hopefully someone nice will answer me
Attacker uploads avatar picture with malicious php code ... |
|
|
Page 1 of 1 |
All times are GMT |
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|