1619, 1/81 ȸ¿ø°¡ÀÔ  ·Î±×ÀΠ 
   sehkmg
   ftz¿¡¼­ ÆÄÀÌÇÁ¿Í catÀ» µ¿½Ã¿¡ »ç¿ëÇØ¾ß ÇÏ´Â ÀÌÀ¯

http://www.hackerschool.org/HS_Boards/zboard.php?AllArticle=true&no=1955 [º¹»ç]


Èì.. Àúµµ (perl -e 'print "~~"'; cat) | /home/level12/attackme ¸¦ ÇØ¾ßÇÏ´Â ÀÌÀ¯°¡ ±Ã±ÝÇØ¼­ Çѹø ¿¬±¸ÇØ ºÃ½À´Ï´Ù~

catÀ» ±×³É »ç¿ëÇϸé ÀÔ·ÂÇѰÍÀ» °ð¹Ù·Î Ãâ·ÂÇØÁÝ´Ï´Ù.

/bin/bash¸¦ Ä¡°í exit¸¦ Ä¡¸é ¿ø·¡´ë·Î µ¹¾Æ¿É´Ï´Ù. ÇÏÁö¸¸ perl -e 'print "ls"' | /bin/bash¸¦ Ä¡°í exit¸¦ Ä¡¸é ·Î±×¾Æ¿ô µË´Ï´Ù.
¿Ö³ÄÇÏ¸é ½©ÀÌ °ð¹Ù·Î Á¾·áµÇ¼­ ±×·¸°Ô ¶§¹®ÀÔ´Ï´Ù.
cat | /bin/bash¸¦ Ä¡°í ¸í·ÉÀ» ³»¸®¸é ½©ÀÌ ½ÇÇàµÇ°í ÀÖ´Â »óÅ¿¡¼­ ¸í·ÉÀÌ ½ÇÇàµË´Ï´Ù.

±×·¯¸é ÀÌÁ¦ (perl -e 'print "ls"'; cat) | /bin/bash¸¦ Ä¡°í Çѹø ¾Æ¹« ¸í·ÉÀ̳ª ³»·Áº¸¸é ¸ÕÀú ls°¡ Ç¥ÁØ ÀÔ·ÂÀ¸·Î µé¾î°¡°í ±× ´ÙÀ½¿¡ ÀÔ·ÂÀ» ÇØÁÖ´Â ¸í·É¾îµéÀÌ ½ÇÇàµÇ´Â °ÍÀ» º¼ ¼ö ÀÖÀ» °ÍÀÔ´Ï´Ù.

ftz ±ú¸é¼­ ±Ã±ÝÇØÇϼÌÀ» ºÐµéÀÌ ¸¹À»°Í °°Àºµ¥ ÇØ°á µÇ¼Ì³ª¿ä? ´©°¡ ¾î¶²±Û¿¡ ftz clearÇϽźРÀÌ°Ç ¾Ë°í ³Ñ¾î°¬³Ä°í Çϱ淡 ¿Ã·ÁºÃ½À´Ï´Ù~

  Hit : 8364     Date : 2012/02/12 01:07



    
cd80 À̰Š»ç½Ç ¸ð¸£°í °è¼Ó ÇÏ½Ã´ÂºÐµé ¸¹ÁÒ ¤»¤»
Àúµµ ¸ð¸£°í °è¼ÓÇÏ´Ù°¡ ¾Æ´ÂÇüÇÑÅ× ¹°¾îº¸°í ¾Ë¾Ò½À´Ï´Ù ¤»¤»
2012/02/12