LFI to RCE via access_log injection

Remote Command Execute [at] CGI Script [video]

The Common Gateway Interface (CGI) is a standard protocol that defines how webserver software can delegate the generation of webpages to a console application. Such applications are known as CGI scripts; they can be written in any programming language, although scripting languages are often used.
A CGI script is a program written in one of several popular languages such as Perl, PHP, Python, etc. that can pass data between a web page and programs on the web server. CGI scripts are widely used to process forms such as search boxes.

This is an old school stuff but some web still vuln with this..

Have fun!!


watch the video HERE

download the video HERE




./NoGe

Comments

labatterie said…
That can pass data between a web page and programs on the web server.
Anonymous said…
This website has been suspended. Please contact support via http://www.123-support.co.uk/


plz reupload it .
evilc0de said…
i just dont have time right now but i will upload all videos again as soon as possible.. :(
Thank you for sharing with us. The content is very good and helpful for me, I learn and know more about it.