萌新web12

萌新web12

 

Although we still can use passthru() to execute commands but we can not appoint 'config.php' to be inspected.

萌新web12

 

Even though we all know that the flag is hidden under that above file in red staff.

FYI: the wildcard character in Linux is '*' which can represent arbitrary character.

Therefore, we can utilize the wildcard character to contruct the payload that can read every file.

 

萌新web12

 

上一篇:UVA11464 Even Parity


下一篇:厦大C语言上机 1372 奇偶求和计算