webPromedium
Easy Upload
hackerlab
Task: Web "Easy Upload" — simple file upload. Solution: Basic file upload bypass, extension filtering circumvention.
$ ls tags/ techniques/
rcelfiphpfile_uploadlocal_file_inclusionremote_code_executiongif_polyglotmime_type_bypassblind_rceincludeob_startoutput_bufferingimage_upload
GIF polyglot creation (valid GIF header + PHP code)MIME type bypass via Content-Type header spoofingLFI via PHP include() functionBlind RCE with file-based output exfiltration
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Revenge Upload— hackerlab
- [web][Pro]Файлообменник (File Exchange)— hackerlab
- [web][Pro]Звездный сейф (Star Safe)— hackerlab
- [web][Pro]Lab 165 — ReplyStream — File Upload Bypass via Content-Type Validation— hackadvisor
- [web][Pro]Безопасное хранилище (Secure Storage)— hackerlab