diff options
| author | jerome <jerome@xlinfo.fr> | 2025-10-12 17:31:28 +0200 |
|---|---|---|
| committer | jerome <jerome@xlinfo.fr> | 2025-10-12 17:31:28 +0200 |
| commit | 30ea3ae69f4c4bac139593a413faeba1b5a05a71 (patch) | |
| tree | e37db99eee3d1b09805ce4c22e5b7f96b8188aa7 | |
| parent | 0c9641ec140b28d0aace0efe3569ddf78decc01a (diff) | |
| download | http-30ea3ae69f4c4bac139593a413faeba1b5a05a71.tar.gz http-30ea3ae69f4c4bac139593a413faeba1b5a05a71.zip | |
cesar
| -rw-r--r-- | env-file | 2 | ||||
| -rw-r--r-- | www/index.html | 7 | ||||
| -rw-r--r-- | www/login.php | 12 | ||||
| -rw-r--r-- | www/page.php | 2 |
4 files changed, 17 insertions, 6 deletions
@@ -3,3 +3,5 @@ FLAG0=AAAAAAA # login.php PASSWD1=password123 FLAG1=BBBBBBB +# cesar.php +FLAG2=CCCCCC diff --git a/www/index.html b/www/index.html index af33466..05c23a4 100644 --- a/www/index.html +++ b/www/index.html @@ -8,13 +8,11 @@ border: solid black 1px; padding: 1em; margin:1em; + color: #808080; } - #titre { + h1 { color:blue; } - .formulaire { - color: #808080; - } </style> </head> <body> @@ -42,6 +40,7 @@ <p id="demo">La méthode est GET.<br> </p> </div> <p><a href="login.php">Login</a> + <p><a href="cesar.php">César</a> <script> function changeMethod() { document.getElementById("monform").method = "post"; diff --git a/www/login.php b/www/login.php index 5e2c2af..75fa223 100644 --- a/www/login.php +++ b/www/login.php @@ -15,7 +15,17 @@ else { <head> <meta charset="utf-8" /> <title>Login</title> -<meta name="generator" content="Geany 1.38" /> +<style> + form { + border: solid black 1px; + padding: 1em; + margin:1em; + color: #808080; + } + h1 { + color:blue; + } +</style> </head> <body> diff --git a/www/page.php b/www/page.php index 7eab917..f88fa3a 100644 --- a/www/page.php +++ b/www/page.php @@ -15,7 +15,7 @@ { echo "<p>Votre OS favori est ".$_REQUEST['os']." !</p>"; } - if (preg_match( "/[Ll][Ii][Nn][Uu][Xx]/",$_REQUEST['os'])) + if (preg_match( "/[Ll][Ii][Nn][Uu][Xx]/",$_POST['os'])) //trop facile en get ! { if(getenv('FLAG0')){ echo "<strong>Bien joué ! Ton flag est ".getenv('FLAG0')."</strong>"; |
