CTFHub skill tree -Web- file upload -.htaccess

table of Contents

If you do not see this as carr0t2 article in cnblog author, it is recommended to get better access to the original page layout, images experience

topic



Thinking

  • Learn .htaccesswhat file is what use

Recommended Reading
https://www.andseclab.com/2020/03/12/htaccess use articles /

tool

1. Chinese ant sword

solution

1. Write .htaccessthe file and upload

<FilesMatch "1">
SetHandler application/x-httpd-php
</FilesMatch>

2. Upload the Trojans, the suffix is not in the picture above some suffix on the line
the opposite of think about it, these are filtered extension are likely to be vulnerable, you can write it down
3. Chinese sword connection ants, get flag

Quote

https://blog.csdn.net/kakuma_chen/article/details/71465251

Guess you like

Origin www.cnblogs.com/carr0t/p/12615106.html