| ID: | 7022 |
|---|---|
| 标题: | [NCTF2019]phar matches everything |
| 描述: | https://github.com/swfangzhang/My-2019NCTF/tree/master/phar%20matches%20everything |
| 类型: | Web |
| 网站: | BUUCTF |
| 题目链接: | https://buuoj.cn/challenges#[NCTF2019]phar matches everything |
| 赛事: | NCTF2019 |
| 年度: | 2019 |
| Flag值: | [NCTF2019]phar matches everything的解题答案为通过Phar反序列化漏洞结合SSRF和PHP-FPM未授权访问实现RCE,最终在根目录获取flag。验证后的网址为:https://blog.csdn.net/mochu7777777/article/details/107633441 |
| writeup: | https://guokeya.github.io/post/1byvbzb_I/ |