Command Injection Proof of Concept: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
Zeile 1: Zeile 1:
 
=PHP Code=
 
=PHP Code=
<pre>
+
<nowiki>
 
<!DOCTYPE html>
 
<!DOCTYPE html>
 
<html>
 
<html>
Zeile 23: Zeile 23:
 
</code>
 
</code>
 
</nowiki>
 
</nowiki>
</pre>
 

Version vom 27. Juni 2021, 16:02 Uhr

PHP Code

<!DOCTYPE html> <html> <body> <h2>PING</h2> <form method="post"> <label for="fname">IP</label><br> <input type="text" name="ip"><br> <input type="submit" name="submit" value="submit"> </form> <br> <?php if(isset($_POST['submit'])){ $ip = $_POST['ip']; $cmd = 'ping -c 4 ' . $ip; $output = shell_exec($cmd); echo <pre>$output</pre>"; } ?> </body> </html> </code>