RE: Need help with this (XXE and\or SQLi) 03-03-2015, 04:22 AM
#8
(03-03-2015, 03:48 AM)whatever Wrote: If it's encased in " and filtered with addslashes() you would be able to break out via %bf%22, no?
I'd assume it's not using magic_quotes_gpc because that function just breaks shit and was turned off in all PHP 3.x.x versions and is depracated as of 5.3
My response was also based on the OP where mysql_real_escape_string was never mentioned, so I didn't think about it.
EDIT: Sorry, it just hit me that not all charsets support the same shit. Derp.
Maximum over kek ^















![[Image: F4Z9Dqw.png]](https://i.imgur.com/F4Z9Dqw.png)
![[+]](https://sinister.li/images/modern/collapse_collapsed.png)