From 3522d9a674be3de6d224afdd6fbe028f77603a0c Mon Sep 17 00:00:00 2001 From: Swissky Date: Sat, 17 Nov 2018 14:40:12 +0100 Subject: [PATCH] Files JPEG -> JPG + Tag v2 --- Insecure deserialization/Ruby.md | 3 ++- .../Image Tragik 2/{centos_id.jpeg => centos_id.jpg} | 0 .../Image Tragik 2/{ubuntu_id.jpeg => ubuntu_id.jpg} | 0 .../Image Tragik 2/{ubuntu_shell.jpeg => ubuntu_shell.jpg} | 0 .../PHP Extension/{Shell.jpeg.php => shell.jpeg.php} | 0 .../PHP Extension/{Shell.php3 => shell.jpg.php} | 0 Upload insecure files/PHP Extension/{Shell.php4 => shell.php3} | 0 Upload insecure files/PHP Extension/{Shell.php5 => shell.php4} | 0 Upload insecure files/PHP Extension/{Shell.php7 => shell.php5} | 0 Upload insecure files/PHP Extension/{Shell.phpt => shell.php7} | 0 Upload insecure files/PHP Extension/{Shell.pht => shell.phpt} | 0 Upload insecure files/PHP Extension/{Shell.phtml => shell.pht} | 0 .../PHP Extension/{Shell.png.php => shell.phtml} | 0 .../PHP Extension/{Shell.shtml => shell.png.php} | 0 Upload insecure files/PHP Extension/shell.shtml | 1 + 15 files changed, 3 insertions(+), 1 deletion(-) rename Upload insecure files/Image Tragik 2/{centos_id.jpeg => centos_id.jpg} (100%) rename Upload insecure files/Image Tragik 2/{ubuntu_id.jpeg => ubuntu_id.jpg} (100%) rename Upload insecure files/Image Tragik 2/{ubuntu_shell.jpeg => ubuntu_shell.jpg} (100%) rename Upload insecure files/PHP Extension/{Shell.jpeg.php => shell.jpeg.php} (100%) rename Upload insecure files/PHP Extension/{Shell.php3 => shell.jpg.php} (100%) mode change 100755 => 100644 rename Upload insecure files/PHP Extension/{Shell.php4 => shell.php3} (100%) rename Upload insecure files/PHP Extension/{Shell.php5 => shell.php4} (100%) rename Upload insecure files/PHP Extension/{Shell.php7 => shell.php5} (100%) rename Upload insecure files/PHP Extension/{Shell.phpt => shell.php7} (100%) rename Upload insecure files/PHP Extension/{Shell.pht => shell.phpt} (100%) rename Upload insecure files/PHP Extension/{Shell.phtml => shell.pht} (100%) rename Upload insecure files/PHP Extension/{Shell.png.php => shell.phtml} (100%) rename Upload insecure files/PHP Extension/{Shell.shtml => shell.png.php} (100%) create mode 100755 Upload insecure files/PHP Extension/shell.shtml diff --git a/Insecure deserialization/Ruby.md b/Insecure deserialization/Ruby.md index eed99c4..dd1c31c 100644 --- a/Insecure deserialization/Ruby.md +++ b/Insecure deserialization/Ruby.md @@ -8,4 +8,5 @@ for i in {0..5}; do docker run -it ruby:2.${i} ruby -e 'Marshal.load(["0408553a1 ## Thanks -- [RUBY 2.X UNIVERSAL RCE DESERIALIZATION GADGET CHAIN - elttam, Luke Jahnke](https://www.elttam.com.au/blog/ruby-deserialization/) \ No newline at end of file +- [RUBY 2.X UNIVERSAL RCE DESERIALIZATION GADGET CHAIN - elttam, Luke Jahnke](https://www.elttam.com.au/blog/ruby-deserialization/) +- [Online access to Ruby 2.x Universal RCE Deserialization Gadget Chain - PentesterLab](https://pentesterlab.com/exercises/ruby_ugadget/online) \ No newline at end of file diff --git a/Upload insecure files/Image Tragik 2/centos_id.jpeg b/Upload insecure files/Image Tragik 2/centos_id.jpg similarity index 100% rename from Upload insecure files/Image Tragik 2/centos_id.jpeg rename to Upload insecure files/Image Tragik 2/centos_id.jpg diff --git a/Upload insecure files/Image Tragik 2/ubuntu_id.jpeg b/Upload insecure files/Image Tragik 2/ubuntu_id.jpg similarity index 100% rename from Upload insecure files/Image Tragik 2/ubuntu_id.jpeg rename to Upload insecure files/Image Tragik 2/ubuntu_id.jpg diff --git a/Upload insecure files/Image Tragik 2/ubuntu_shell.jpeg b/Upload insecure files/Image Tragik 2/ubuntu_shell.jpg similarity index 100% rename from Upload insecure files/Image Tragik 2/ubuntu_shell.jpeg rename to Upload insecure files/Image Tragik 2/ubuntu_shell.jpg diff --git a/Upload insecure files/PHP Extension/Shell.jpeg.php b/Upload insecure files/PHP Extension/shell.jpeg.php similarity index 100% rename from Upload insecure files/PHP Extension/Shell.jpeg.php rename to Upload insecure files/PHP Extension/shell.jpeg.php diff --git a/Upload insecure files/PHP Extension/Shell.php3 b/Upload insecure files/PHP Extension/shell.jpg.php old mode 100755 new mode 100644 similarity index 100% rename from Upload insecure files/PHP Extension/Shell.php3 rename to Upload insecure files/PHP Extension/shell.jpg.php diff --git a/Upload insecure files/PHP Extension/Shell.php4 b/Upload insecure files/PHP Extension/shell.php3 similarity index 100% rename from Upload insecure files/PHP Extension/Shell.php4 rename to Upload insecure files/PHP Extension/shell.php3 diff --git a/Upload insecure files/PHP Extension/Shell.php5 b/Upload insecure files/PHP Extension/shell.php4 similarity index 100% rename from Upload insecure files/PHP Extension/Shell.php5 rename to Upload insecure files/PHP Extension/shell.php4 diff --git a/Upload insecure files/PHP Extension/Shell.php7 b/Upload insecure files/PHP Extension/shell.php5 similarity index 100% rename from Upload insecure files/PHP Extension/Shell.php7 rename to Upload insecure files/PHP Extension/shell.php5 diff --git a/Upload insecure files/PHP Extension/Shell.phpt b/Upload insecure files/PHP Extension/shell.php7 similarity index 100% rename from Upload insecure files/PHP Extension/Shell.phpt rename to Upload insecure files/PHP Extension/shell.php7 diff --git a/Upload insecure files/PHP Extension/Shell.pht b/Upload insecure files/PHP Extension/shell.phpt similarity index 100% rename from Upload insecure files/PHP Extension/Shell.pht rename to Upload insecure files/PHP Extension/shell.phpt diff --git a/Upload insecure files/PHP Extension/Shell.phtml b/Upload insecure files/PHP Extension/shell.pht similarity index 100% rename from Upload insecure files/PHP Extension/Shell.phtml rename to Upload insecure files/PHP Extension/shell.pht diff --git a/Upload insecure files/PHP Extension/Shell.png.php b/Upload insecure files/PHP Extension/shell.phtml similarity index 100% rename from Upload insecure files/PHP Extension/Shell.png.php rename to Upload insecure files/PHP Extension/shell.phtml diff --git a/Upload insecure files/PHP Extension/Shell.shtml b/Upload insecure files/PHP Extension/shell.png.php similarity index 100% rename from Upload insecure files/PHP Extension/Shell.shtml rename to Upload insecure files/PHP Extension/shell.png.php diff --git a/Upload insecure files/PHP Extension/shell.shtml b/Upload insecure files/PHP Extension/shell.shtml new file mode 100755 index 0000000..b1abb37 --- /dev/null +++ b/Upload insecure files/PHP Extension/shell.shtml @@ -0,0 +1 @@ + \ No newline at end of file