This lesson gives participants a demonstration of unrestricted file upload. Basically, these files can execute any command and then show up on a web server. The code is placed in a PHP file and uploaded using the Burp Suite interceptor to see where a file is positioned on a web server.

