Correct, most wouldn't NOT filter user input.DaMoNarch wrote:I take it that most web admins would fix it so that this wouldn't work.
NEVER trust the user.
Correct, most wouldn't NOT filter user input.DaMoNarch wrote:I take it that most web admins would fix it so that this wouldn't work.

DeathxFish wrote:ok listen when you know how to execute different commands at the same time (google unix commands its like the first link) then look for something obscure and when i mean obscure i really really really mean it. and like it says its a file (think back to mission 3 - what did u have to do with that file?) well hope it didnt give too much away but i think its better then just telling someone to go learn some unix commands and leave them hanging


shailx7 wrote:Please clear me why "passwd" command doesnt work???


SleepIsForTheMeek wrote:looooool
i was trying to cat the pass file -.-
epic facepalm.



KthProg wrote:as far as with the concept of placing several commands on one line, so that your command runs after the server is done executing the expected command, could you also do that to php file or some java code or would it simply interpret it as a string?
syscmd('cal ' + userinput) 

Users browsing this forum: No registered users and 0 guests