1)Set it up on your machine (Apache or Xaamp + Java + Burp Suite)
2)Run it on a live CD without the need to setting it up yourself.
3)Run it on a website. No need to install anything.
Below is a simple Demo in how to bypass the upload form by changing the security level and the file type to upload a backdoor and remote execute code in the server machine. Enjoy