We can execute a php command and it will be executed. Let’s see the phpinfo (I deleted useless lines):
Then I modify the file so the payload is stored on 1 line (the line must end with an \n
else the command won’t be executed) and we send it using nc
: