webPromedium
Старая версия (Old Version)
hackerlab
Task: Web challenge with PHP page parameter and old PHP version. Solution: Exploit PHP assert() code injection vulnerability in PHP < 7.0 where string arguments are evaluated as code, achieving RCE.
$ ls tags/ techniques/
PHP assert() code injection (PHP < 7.0)String argument evaluation exploitationLFI to RCE escalation
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Обходной путь (Obhodnoy Put)— hackerlab
- [web][Pro]Провальный код (Failed Code)— hackerlab
- [web][Pro]Базовая авторизация 2 (Basic Auth 2)— hackerlab
- [web][Pro]B64Decoder— hackerlab
- [web][Pro]Секрет (Secret)— hackerlab