Git Product home page Git Product logo

exploits's People

Contributors

mm0r1 avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

exploits's Issues

Wrong information

Hello
My version of PHP is PHP Version 7.1.27

disable_functions:passthru,exec,system,chroot,chgrp,chown,shell_exec,proc_open,proc_get_status,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,stream_socket_server,fsocket,popen

I uploaded exploit. PHP to the website,Execution is wrong, and the information is as follows.

Couldn't parse ELF

Can you solve it, please?

Not work from apache

From cli work perfect
image
But from apache2 not work, i get error "connection reset"
image

Apache/2.4.18 (Ubuntu)
Ubuntu 16.04.3

php-filter-bypass for 5.x

Hey,

I noticed you mentioned that this is applicable to 5.x, just wondering if you could share the changes that are needed for that?

Thanks.

I want to learn

Do you have any suggestions if I want to learn how to exploit, thank you.

Bypass without PHP References?

Hi @mm0r1

Incredible work you have published!!!

This is among the best (if not the best) PHP code that I have seen in many years.

Currently all of your published scripts require PHP reference syntax; do you have any bypass code that works without references?

I have a unique situation where I allow end-users to publish PHP code on a server with minimal restrictions, so I’m very interested in the work you are publishing.

Temporary fix?

Works on an up to date Ubuntu 18.04.3 with PHP 7.2.19.
Can anything be done other than disabling gc_collect_cycles while waiting for the issue to be patched?

Is it possible in "php-concat-bypass" to return back ability to...

Is it possible in "php-concat-bypass" exploit POC to return back the ability to execute functions like proc_open, popen, passthru etc.?
Not just introduce new function "pwn", but load disabled functions?

Treat it as a feature request. I'll pay 500$ for this in btc.
Love, Peace =*

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.