Web Shell Upload via Path Traversal | PortSwigger (Video solution)

Опубликовано: 25 Июнь 2026
на канале: Bnke
4,238
14

This Video Shows the Lab Solution of a vulnerable image upload function. The server is configured to prevent the execution of user-supplied files, but this restriction can be bypassed by exploiting a secondary vulnerability.

To solve the lab, upload a basic PHP web shell and use it to exfiltrate the contents of the file /home/carlos/secret. Submit this secret using the button provided in the lab banner.

You can log in to your own account using the following credentials: wiener:peter