exiftool -Comment="" payload.jpg
exiftool payload.jpg (Verify that we injected PHP code in the malicious .jpg file)
Upload and profit! (Don't forget to put .php as the second extension for the PHP code to run. Overall, it depends on the web app)
Last updated 8 months ago