命令执行Bypass
GXYCTF2019
escapeshellarg与escapeshellcmd造成的逃逸
BUUCTF2018
ZJCTF2019
0CTF2016
python-Pickle序列化
哈系长度扩展攻击-hashpumpy
De1CTF2019
php伪协议