I have discovered a method to get remote command execution using only wget. To show you how this works I first want you to wget this url like this: wget www.google.com/support/forum/p/AdSense/thread?tid=;ls;#09dbf3733ec9b44d&hl=en Do you see what I did there? Remote command execution using only wget! If you didn’t catch it, theres an “ls” inside the url, [...]
-
You are currently browsing the Dag Erik Vikan blog archives for February, 2012.
Pages
Archives
Categories
- Algorithms (2)
- Programming (4)
- Random random (13)
- Random security (3)
- Webappsec (6)
Blogroll
Meta