Tags: web command_injection php 

Rating: 5.0

PHP Command Injection. Blacklist bypass by URL encoding.

Original writeup (http://www.codehead.co.uk/acebear-2018-url-param/).