https://staging.skin.pt/webui/?g=sys_dia_data_down&file_name=../etc/passwd

  • Controller Module: Magento_Cms
  • Controller Class: Magento\Cms\Controller\Noroute\Index
  • Controller Action Name: execute

Request

GET Parameters

Chave Valor
g sys_dia_data_down
file_name ../etc/passwd

POST Parameters

No POST parameters

Request Attributes

Chave Valor
Controller Module Magento_Cms
Controller ClassName Magento\Cms\Controller\Noroute\Index
Controller Full ActionName cms_noroute_index
Controller ActionName execute
Path Info /webui/

Request Headers

Chave Valor
Accept-Encoding gzip
Accept-Language en
Accept */*
Connection close
User-Agent Mozilla/5.0 (ZZ; Linux i686; rv:129.0) Gecko/20100101 Firefox/129.0
Host staging.skin.pt

Server Parameters

Chave Valor
USER www-data
HOME /var/www
HTTP_ACCEPT_ENCODING gzip
HTTP_ACCEPT_LANGUAGE en
HTTP_ACCEPT */*
HTTP_CONNECTION close
HTTP_USER_AGENT Mozilla/5.0 (ZZ; Linux i686; rv:129.0) Gecko/20100101 Firefox/129.0
HTTP_HOST staging.skin.pt
REDIRECT_STATUS 200
SERVER_NAME staging.skin.pt
SERVER_PORT 443
SERVER_ADDR 23.88.71.233
REMOTE_USER
REMOTE_PORT 39572
REMOTE_ADDR 144.31.2.199
SERVER_SOFTWARE nginx/1.18.0
GATEWAY_INTERFACE CGI/1.1
HTTPS on
REQUEST_SCHEME https
SERVER_PROTOCOL HTTP/1.1
DOCUMENT_ROOT /home/www/skin.pt/httpdocs-staging/pub
DOCUMENT_URI /index.php
REQUEST_URI /webui/?g=sys_dia_data_down&file_name=../etc/passwd
SCRIPT_NAME /index.php
CONTENT_LENGTH
CONTENT_TYPE
REQUEST_METHOD GET
QUERY_STRING g=sys_dia_data_down&file_name=../etc/passwd
SCRIPT_FILENAME /home/www/skin.pt/httpdocs-staging/pub/index.php
MAGE_RUN_CODE skinpt
MAGE_RUN_TYPE website
PHP_VALUE memory_limit=2024M max_execution_time=18000
PHP_FLAG session.auto_start=off suhosin.session.cryptua=off
FCGI_ROLE RESPONDER
PHP_SELF /index.php

Cookies

Chave Valor
Developer
2.4.6-p12
0.48 s
100.00 MB
0 q / 0.000 s
Carrinho