bypass upload challenge headache

Questions? Stuck? post here....
Post Reply
scatter
Fame ! Where are the chicks?!
Fame ! Where are the chicks?!
Posts: 366
Joined: 01 Jan 2014, 05:22
10

bypass upload challenge headache

Post by scatter »

Okay here is a source code of the php file that controls upload and now my head is fucked, I spent more than 4 hours trying to bypass this one but no solution , anyone has an idea ?

http://code.suck-o.com/42565" onclick="window.open(this.href);return false;

User avatar
ayu
Staff
Staff
Posts: 8109
Joined: 27 Aug 2005, 16:00
18
Contact:

Re: bypass upload challenge headache

Post by ayu »

The assignment is to bypass the extension check and upload a php file or?
"The best place to hide a tree, is in a forest"

scatter
Fame ! Where are the chicks?!
Fame ! Where are the chicks?!
Posts: 366
Joined: 01 Jan 2014, 05:22
10

Re: bypass upload challenge headache

Post by scatter »

from the code its not just the extension because every file u can upload will become called "jp" or "jpeg etc because of the strrpos funtions and substr() and yup the goal is to bypass all that to upload a shell :)

Post Reply