Rating:

The FindFirstFile() function in the Windows API can cause odd behaviour in PHP applications running on Windows. We leverage this to leak information about the path to a dynamically generated file.

Mirror here: https://nusgreyhats.org/write-ups/hitbgsecquals2018-upload/

Original writeup (https://nandynarwhals.org/hitbgsecquals2018-upload/).