flile.phpJunk123png -> file.phpJunk123png
This commit is contained in:
dxbstyle 2023-03-11 20:44:03 +01:00 committed by GitHub
parent 94e9127a8d
commit 0bc3981364
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -54,7 +54,7 @@ Other useful extensions:
* _file.php\x00.png_
* _file.php%0a.png_
* _file.php%0d%0a.png_
* _flile.phpJunk123png_
* _file.phpJunk123png_
5. Add **another layer of extensions** to the previous check:
* _file.png.jpg.php_
* _file.php%00.png%00.jpg_