当前位置:网站首页>[wp]ctfshow-web introductory information collection
[wp]ctfshow-web introductory information collection
2022-07-25 19:32:00 【_ Xiao SA】
opened ctfshow Of web Get started and brush questions
web1
F12
web2
To open the first F12, Then copy the container URL
official wp:view-source:
web3
burp Grab the bag
web4-6 A little
You need to set the delay scanning
web7
/.git/
web8
/.svn/
web9
/index.php.swp
web10-11 A little
web12

web13
stem : There should be no sensitive information in the technical documents , After deployment to the production environment, modify the default password in time 
Web14
Compiler vulnerability , I've heard that there were many such loopholes before
View source files " <img src="editor/upload/banner-app.png" alt="App">"
There is such a path access /editor/
Insert file —— Found in the file space flag
web15
Follow the prompts
visit /admin page Found a password forgetting operation , You need to enter the address See below the main page QQ mailbox , adopt QQ No. query mailbox , It's from Xi'an Password changed successfully , user name admin Log in successfully and get flag
web16
php probe -phpinfo
web17
Scan the directory to get
backup.sql
web18
if(score>100)
{
var result=window.confirm("\u4f60\u8d62\u4e86\uff0c\u53bb\u5e7a\u5e7a\u96f6\u70b9\u76ae\u7231\u5403\u76ae\u770b\u770b");
}
obtain 110.php
web19
View source code
web20
Scan the background , Download to database . Open the can
flag{ctfshow_old_database}
边栏推荐
- what is qml in qt
- Pymoo learning (6): termination conditions
- 六轴传感器使用学习记录
- 微信小程序 29 热搜榜的完善②
- Have you ever seen this kind of dynamic programming -- the stock problem of state machine dynamic programming (Part 1)
- 微信小程序 26 播放音乐页的完善②
- JS learning notes 16: switching pictures small project practice
- 小程序毕设作品之微信校园维修报修小程序毕业设计成品(6)开题答辩PPT
- 某公司网络设计与规划
- Old wine in new bottles -- sample analysis of recent apt32 (sea Lotus) organizational attacks
猜你喜欢

How to analyze qiime2 after obtaining picrust2 results

Internal network planning and design of Yingcheng hospital

微信小程序 27 进度条的动态实现和搜索框、热搜榜的静态搭建

Sccm2012r2 network deployment reinstallation system

Flutter tips: optimizing the buildcontext you use

蓝桥杯基础练习——矩阵的回形取数(C语言)

Swift 基础 Codable(JSONEncoder JSONDecoder)的使用

微信小程序 26 播放音乐页的完善②

IP地址的概念

An idea of solving div adapting to screen
随机推荐
Dynamic implementation of wechat applet 27 progress bar and static construction of search box and hot search list
The finished product of wechat campus maintenance and repair applet graduation design (1) development outline
微信小程序10-微搭模板
虹科分享|如何解决勒索软件安全漏洞
485 current acquisition module dam-8041
浅谈接口加密
NPM semantic version control, solution console prop being mutated: "placement" error
Network data request for wechat applet development
新瓶装老酒--近期APT32(海莲花)组织攻击活动样本分析
微信小程序开发之WXSS模板样式与WXS脚本语言
balanced binary tree
微信小程序 26 播放音乐页的完善②
Selenium 设置元素等待的三种方式详解
Website construction of information exchange platform for China Africa South South cooperation based on PHP
Small program completion work wechat campus maintenance application small program graduation design finished product (2) small program function
Security foundation 6 - vulnerability recurrence
Wechat applet 10 - wechat template
Leetcode skimming: dynamic programming 07 (different binary search trees)
鸿蒙-大喵计算画板-简介
Sccm2012r2 network deployment reinstallation system