ShellOL - Challenge 2 - Only semi-effective pt 2





You must perform a simple shell command injection attack, without the use of semicolons, ampersands, or pipe characters.

Your objective is to read the contents of either /etc/passwd or C:\boot.ini, depending on your OS.
PARAMETERS:
Injection Location - Command argument
Method - GET
Sanitization - Reject(high), no semicolons, ampersands, pipes
Output - output shown, error status disclosed, command shown
Injection String: