Chocapikk / CVE-2024-4577

PHP CGI Argument Injection vulnerability
29 stars 11 forks source link

url encoding in ascii #1

Open ITmrHoang opened 3 months ago

ITmrHoang commented 3 months ago

Hi, I am learning. I see, you using %AD in url. i understand is urlencode, but i find decode %ad each document gives different results is soft hyphen or ¡ or short - or ¬ link is: https://www.sciencebuddies.org/science-fair-projects/references/ascii-table https://www.w3schools.com/charsets/ref_html_entities_4.asp https://www.ascii-code.com/ISO-8859-9/173

you can help me , give for me document for it. I'm learning about attacking. thank you for

Chocapikk commented 3 months ago

https://learn.microsoft.com/en-us/openspecs/windows_protocols/ms-ucoderef/d1980631-6401-428e-a49d-d71394be7da8

Hello this is about this feature. Depending on the codepage used, you get different results.