HACKR.GG
LabsSnapGram Upload Filter
File UploadMedium

SnapGram Upload Filter

A profile photo uploader that checks file extension and Content-Type. Spoof the MIME type to bypass the filter and execute a webshell.

Step-by-step walkthrough
// Objective

Upload a PHP webshell by spoofing the MIME type to bypass the extension filter.

ToolkitBrowserBurp Suitecurl
// Machine control
Checking session...
// Submit flag