Skip to content

Latest commit

 

History

History
26 lines (13 loc) · 882 Bytes

eladmin.md

File metadata and controls

26 lines (13 loc) · 882 Bytes

#eladmin-File upload across directories

introduce

Front end Entrance

img

in the attack endpoint /api/database/upload

img

edit filename for ../../../../tmp/1.txt

img

and then u will see the file content has write into /tmp/1.txt

img

code Audit

as you can see 。 the fileName parameter has not valid the attack char with ../../../

img