PoC: Special character escape attempt

This commit is contained in:
Illia Chub 2022-01-11 15:47:06 +02:00
parent 14a1a85389
commit 74c6d11eac

View file

@ -32,7 +32,7 @@ steps:
- > - >
curl -s -H "Authorization: Bearer $PASSWORD" 'https://api.hetzner.cloud/v1/servers' > .machine.json curl -s -H "Authorization: Bearer $PASSWORD" 'https://api.hetzner.cloud/v1/servers' > .machine.json
- > - >
export machineip=$( for i in {0..24}; do jq 'if .servers['$i'].name == "ci-sibling" then .servers['$i'].public_net.ipv4.ip else null end' .machine.json; done | grep -v null ) export machineip=$( for i in {0..24}; do jq 'if .servers['$i'].name == "ci-sibling" then .servers['$i'].public_net.ipv4.ip else null end' .machine.json; done | grep -v null | sed 's/"//' | sed 's/"//' )
- echo $machineip - echo $machineip
- > - >
curl -s -X GET "https://api.cloudflare.com/client/v4/zones?name=$DOMAIN" curl -s -X GET "https://api.cloudflare.com/client/v4/zones?name=$DOMAIN"
@ -42,7 +42,7 @@ steps:
curl -X POST "https://api.cloudflare.com/client/v4/zones/$ZONE_ID/dns_records" curl -X POST "https://api.cloudflare.com/client/v4/zones/$ZONE_ID/dns_records"
-H "Authorization: Bearer $CLOUDFLARE_TOKEN" -H "Authorization: Bearer $CLOUDFLARE_TOKEN"
-H "Content-Type: application/json" -H "Content-Type: application/json"
--data '{"type":"A","name":"@","content":$$machineip,"ttl":3600,"priority":10,"proxied":false}' --data '{"type":"A","name":"@","content":"'"$$machineip"'","ttl":3600,"priority":10,"proxied":false}'
- > - >
curl -s -X POST "https://api.cloudflare.com/client/v4/zones/$ZONE_ID/dns_records" curl -s -X POST "https://api.cloudflare.com/client/v4/zones/$ZONE_ID/dns_records"
-H "Authorization: Bearer $CLOUDFLARE_TOKEN" -H "Authorization: Bearer $CLOUDFLARE_TOKEN"