douzhang8144 2017-02-20 04:31
浏览 16

php preg_match spacebar绕道而行

I was learning the php vulnerabilities. and I have a php code like this

<?php
if(isset($_GET['hi']) &&
!preg_match("/work/i", $_SERVER['QUERY_STRING']) &&
$_GET['hi'] === 'work hard')
echo "DETOUR SUCCEED" ?>

I want to echo "DETOUR SUCCEED"

I've been searching for ways to detour the preg_match. But I could not.

I think this preg_match is vulnerable because of a space between work and hard. But I'm not sure. Please help me figure out

  • 写回答

0条回答 默认 最新

    报告相同问题?

    悬赏问题

    • ¥30 雷达辐射源信号参考模型
    • ¥15 html+css+js如何实现这样子的效果?
    • ¥15 STM32单片机自主设计
    • ¥15 如何在node.js中或者java中给wav格式的音频编码成sil格式呢
    • ¥15 不小心不正规的开发公司导致不给我们y码,
    • ¥15 我的代码无法在vc++中运行呀,错误很多
    • ¥50 求一个win系统下运行的可自动抓取arm64架构deb安装包和其依赖包的软件。
    • ¥60 fail to initialize keyboard hotkeys through kernel.0000000000
    • ¥30 ppOCRLabel导出识别结果失败
    • ¥15 Centos7 / PETGEM