ThisisLegal.com

ThisisLegal Forums

Welcome to the forums! A chance for site members to chat and get help.

You are not logged in.

#1 2009-11-10 10:08:24

dot_Cipher
Member
Registered: 2009-11-10
Posts: 13

Realistic 4 Challenge Question

I am the point where I need to go back directories in the challenge and I know that \the syntax of "../" , "./" and "~/" help do so when used in the url for the customer.  Even when I use the cipher on the path.  I still only get the error of:

Error opening file ~/public_html/newr/src/

or

Error opening file ./public_html/newr/src/

Any ideas on this?

Offline

#2 2009-11-12 07:15:50

Timse
Member
Registered: 2009-02-08
Posts: 18

Re: Realistic 4 Challenge Question

I need help with this too.

Offline

#3 2009-11-12 12:49:23

dot_Cipher
Member
Registered: 2009-11-10
Posts: 13

Re: Realistic 4 Challenge Question

I am glad I am not the only one,  I feel like I am really close, I just dont know the syntax.

..
or
.
or
~

As I know navigating directories is a requirement to find the hidden files.  Then again, I really dont know what I am looking for in the first place, just exploring I guess? lol

Offline

#4 2009-11-15 04:29:30

t0mmy9
Administrator
Registered: 2005-01-07
Posts: 21

Re: Realistic 4 Challenge Question

Maybe you should check out this link:

http://www.computerhope.com/unix/ucd.htm#02

you wont be using "cd" in the url, as this isnt how it works but it may help you with the syntax


Site admin

Offline

#5 2009-12-04 19:01:49

mackio
Member
Registered: 2009-12-04
Posts: 1

Re: Realistic 4 Challenge Question

still having difficulty, ive tried things like http://thisislegal.com/newr/../read.php?customer=4 but it does not work.

Offline

#6 2009-12-08 10:31:38

t0mmy9
Administrator
Registered: 2005-01-07
Posts: 21

Re: Realistic 4 Challenge Question

Youve helped yourself there without realising it, look at where the link is trying to take you to and what you entered


Site admin

Offline

#7 2009-12-08 18:05:11

dot_Cipher
Member
Registered: 2009-11-10
Posts: 13

Re: Realistic 4 Challenge Question

Man this is still killing me lol...

Offline

#8 2009-12-08 18:14:16

dot_Cipher
Member
Registered: 2009-11-10
Posts: 13

Re: Realistic 4 Challenge Question

I got something else now...  Not sure what to make of it... But now it seems like I need to know what file to look for and where it is?

I got to the point where it gave me a new kind of error:
"open_basedir restriction in effect........blah blah"

If thats too much info ill take it down.  But I finally got one step closer it seems.  I just feel so stupid for not getting this! frown

Offline

#9 2009-12-22 22:00:41

Phicar
Member
Registered: 2009-12-22
Posts: 1

Re: Realistic 4 Challenge Question

Hi, i have a db direction but it does not read s

Offline

#10 2009-12-23 03:07:22

BuRNeD
Member
Registered: 2009-03-21
Posts: 117

Re: Realistic 4 Challenge Question

what you mean you have a DB Direction?

Offline

#11 2010-02-23 08:11:41

Plyxter
Member
Registered: 2010-02-23
Posts: 1

Re: Realistic 4 Challenge Question

Hope someone still wanders around here, because I'm terribly stuck...

So far I understand I have to use the customer= url to navigate. But whatever I type, I always get the message 'error opening file' or 'Warning: fopen(ubzr/guvfv30/choyvp_ugzy/arje/fep/ernq.cuc) [function.fopen]: failed to open stream: No such file or directory in /home/thisi30/public_html/newr/src/read.php on line 45'

Maybe my knowledge of Directory tranversal isn't good enough.
Hope that someone can help me, because I already read all the threads regarding R4.

Thanks

Offline

#12 2010-02-23 09:07:23

dot_Cipher
Member
Registered: 2009-11-10
Posts: 13

Re: Realistic 4 Challenge Question

I recently finished this one...  And it gave me real hell to do...  But first you should try to consider what that error message means and ask yourself why is it giving you that random slew of letters?

(
'Warning: fopen(ubzr/guvfv30/choyvp_ugzy/arje/fep/ernq.cuc) [function.fopen]: failed to open stream: No such file or directory in /home/thisi30/public_html/newr/src/read.php on line 45'
)

Offline

#13 2010-04-12 11:19:07

kjangwa
Member
Registered: 2010-03-27
Posts: 23

Re: Realistic 4 Challenge Question

I understand the encryption ,but still cannot open
anything with the read script,
i can't even open the home or orders  pages with it.
A pointer would be most welcome.

Offline

#14 2010-04-14 15:27:50

xen
Member
Registered: 2010-03-14
Posts: 35

Re: Realistic 4 Challenge Question

just the other day i gave someone a cake, they threw a rock at my head frown
i threw it back and took my cake! smile

Offline

#15 2010-04-15 07:23:41

BuRNeD
Member
Registered: 2009-03-21
Posts: 117

Re: Realistic 4 Challenge Question

Ohh, pretty good hint xen, it's actually true one and it goes for Plyxter

Offline

#16 2010-04-15 09:10:53

xen
Member
Registered: 2010-03-14
Posts: 35

Re: Realistic 4 Challenge Question

that's not even the part i got stuck on, i ended up chasing the wrong guy for ages, got all out of breath and sat down then seen the actual guy run past, then it was a matter of getting information out of him with a blow-torch and pliers.
hammer

Offline

#17 2010-04-15 10:11:30

BuRNeD
Member
Registered: 2009-03-21
Posts: 117

Re: Realistic 4 Challenge Question

and then?

Offline

#18 2010-04-15 10:48:28

xen
Member
Registered: 2010-03-14
Posts: 35

Re: Realistic 4 Challenge Question

i got my answer and some nice new points aswell

Offline

#19 2011-01-16 16:05:44

perun
Member
Registered: 2011-01-16
Posts: 3

Re: Realistic 4 Challenge Question

i know where is db.. but how to read it? any hint?

Offline

#20 2011-02-21 07:57:52

phcoder
Member
Registered: 2011-02-09
Posts: 32

Re: Realistic 4 Challenge Question

Which page am I supposed to be after? I can view the index, order, order2 and opinion page but not the db file is there some other page/s that I should look for?

Offline

#21 2011-02-21 08:41:32

phcoder
Member
Registered: 2011-02-09
Posts: 32

Re: Realistic 4 Challenge Question

http://www.thisislegal.com/newr/secure/login.php

entered password here and now it says page not found?
v***o <--is this correct?

Offline

#22 2011-02-21 08:47:18

phcoder
Member
Registered: 2011-02-09
Posts: 32

Re: Realistic 4 Challenge Question

lolz opened the secure dir after that and-voilÃ

Offline

#23 2012-02-15 06:26:56

yomanhere
Member
Registered: 2012-02-15
Posts: 1

Re: Realistic 4 Challenge Question

i need help completing this challenge.I really don't know what i need to do after i find h***/t***3*/p*********l/newr/scr/read.php.....i m completely lost
i read all forum and i still don'y know what to do next...i waiting PM or a post here

Offline

#24 2012-03-03 00:39:53

Karlito
Member
Registered: 2011-07-27
Posts: 19

Re: Realistic 4 Challenge Question

I have no idea what to do!


awesome:awesome::awesome::awesome::awesome::awesome::awesome::awesome:

Offline

#25 2012-03-25 03:21:19

dariusmare
Member
Registered: 2012-03-20
Posts: 40

Re: Realistic 4 Challenge Question

I found the <i> tricky </i> link but when i try to open a file like etc/passwd i get "Error opening file ../../rgp/cnffjq"


If i helped you please press the Thanks Button under my Profile Actually press (look left)

Offline

Board footer

Powered by FluxBB