Coykiller Icon OWASP Mutillidae II: Keep Calm and Pwn On
Version: 2.11.22 Security Level: 0 (Hosed) Hints: Enabled Not Logged In
Home | Login/Register | Toggle Hints | Toggle Security | Enforce TLS | Reset DB | View Log | View Captured Data
 
Want to Help?
 
Webpwnized YouTube Channel
Video Tutorials
 
Webpwnized Twitter Channel
Announcements
 
Webpwnized Twitter Channel
Getting Started
 
Array ( [type] => 2 [message] => fopen(/tmp/captured-data.txt): failed to open stream: No such file or directory [file] => /var/www/html/mutillidae/includes/capture-data.php [line] => 114 )
Error Message
 
Failure is always an option
Line130
Code0
File/var/www/html/mutillidae/includes/capture-data.php
MessageError attempting to record captured data to file /tmp/captured-data.txt. 1
Trace#0 /var/www/html/mutillidae/capture-data.php(1): include_once() #1 /var/www/html/mutillidae/index.php(503): require_once('/var/www/html/m...') #2 {main}
Diagnotic InformationError trying to save captured data from capture.php into file
Click here to reset the DB
 
Capture Data
Go Back   Back Help Me! Help Me!
Expand Hints Hints and Videos
View Captured Data
Data Capture Page
 
This page is designed to capture any parameters sent and store them in a file and a database table. It loops through the POST and GET parameters and records them to a file named captured-data.txt. On this system, the file should be found at /tmp/captured-data.txt. The page also tries to store the captured data in a database table named captured_data and logs the captured data. There is another page named captured-data.php that attempts to list the contents of this table.
 
The data captured on this request is: page = capture-data.php
 
Would it be possible to hack the hacker? Assume the hacker will view the captured requests with a web browser.
 
Browser: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)
PHP Version: 7.4.33