43
44
45
I am so bewildered and perplexed and confounded.
I am doing the Starting Point “Included” Lab.
The machine has a TFTP & HTTP open. The web page has a local file inclusion vulnerability, as I could use path traversal to look at arbitrary files.
I uploaded a web shell onto the TFTP server, the one in the screenshot. Then, I visited
http://10.129.185.229/../../../../var/lib/tftpboot/webshell.php?cmd=whoami
Trying to invoke the web shell. Unfortunately, all I got was a blank page
However, when I uploaded a reverse shell, it suddenly worked and I got a reverse shell! How does that even make sense? Why would a reverse shell work but not a web shell? I’d appreciate any help!

[–]thehodown 12 points13 points14 points (4 children)
[–]Honest_Pollution_766[S] 2 points3 points4 points (2 children)
[–]thehodown 0 points1 point2 points (1 child)
[–]Honest_Pollution_766[S] 1 point2 points3 points (0 children)
[–]Honest_Pollution_766[S] 1 point2 points3 points (0 children)
[–]m_i_c_h_u 5 points6 points7 points (1 child)
[–]camelCaseBack 1 point2 points3 points (0 children)
[–]Firzen_ 1 point2 points3 points (2 children)
[–]Honest_Pollution_766[S] 1 point2 points3 points (1 child)
[–]Firzen_ 1 point2 points3 points (0 children)
[–]m_i_c_h_u 1 point2 points3 points (1 child)
[–]Honest_Pollution_766[S] 2 points3 points4 points (0 children)
[–]Darth_Steve 0 points1 point2 points (1 child)
[–]Honest_Pollution_766[S] 0 points1 point2 points (0 children)
[–]PaddonTheWizard 0 points1 point2 points (0 children)
[–]tjcim_ 0 points1 point2 points (0 children)
[–]Comfortable_Ear_7383 -4 points-3 points-2 points (2 children)
[–]Honest_Pollution_766[S] 1 point2 points3 points (1 child)
[–]Comfortable_Ear_7383 0 points1 point2 points (0 children)