Mienteles
Description
Solution
<?php
if (isset($_GET['src'])) {
highlight_file(__FILE__);
die();
}
?>
...
<div class="card-body">
<h5 class="card-title">Flag</h5>
<p class="card-text">Aquí estará tu flag: </p>
<!-- Accede a ?src -->
<?php
error_reporting(0);
if ($_POST['keyl'] == md5(date('Y-m-d'))) {
foreach ($_POST as $name => $value) {
$assign = "\$" . $name . "='" . preg_replace('([^A-Za-z0-9@. _-])', '', $value) . "';";
eval($assign);
}
} else {
echo "No podes hackearme";
}
?>
</div>
...

Last updated