-
-
Notifications
You must be signed in to change notification settings - Fork 1.5k
Closed
Description
There could be a case that you can add to this document. There was a situation that my target was not vulnerable against Directory Traversal Attack in a normal way, but it was allowing me to upload a compressed folder, I was able to upload a PHP shell file in a folder that had the permission to execute the file by doing this:
1- Create a zip file with a Python code and for the name of the target file to be compressed use something like this ../../../../../../../../var/www/target/root/shell.php [we cannot do it using normal applications that can ZIP files]
I believe this trick should be mentioned in WSTG somewhere.
kingthorin, khundeck-fwdsec, jmeit-fwdsec and jsherm-fwdsec
Metadata
Metadata
Assignees
Labels
newNew content to writeNew content to write