45332

We have a quiz app here.

Now we can execute the uploaded file here We have code execution.

We can try php-reverse-shell.php Then running it we get a shell:

We can try this

Verifying this:

Now we can replace the binary with a reverse shell. We need a x64 reverse shell

Now we can replace the bd.exe binary:

Then start a python server on kali

Now transfer and reboot:

Now we get a shell:

We got it

Last updated

Was this helpful?