1.测试test.php info.php php_info.php phpinfo.php+ ]# n7 ]3 w5 A* t
4 Y% v( r( `1 ]
2.扫描看有没有fck编辑器,如果有就用fckeditor\editor\dialog\fck_spellerpages\spellerpages\server-scripts\spellchecker.php爆: ^5 k6 v9 N# Q Q; _
e7 T& `% D- s6 ]1 O7 A& s
3.看看有没有phpmyadmin或者phpMyAdmin利用phpMyAdmin/libraries/select_lang.lib.php1 F8 Z9 y5 N2 r* ^$ X$ [
phpMyAdmin/darkblue_orange/layout.inc.php
* J& `2 V. C0 U, _- jphpMyAdmin/index.php?lang[]=13 ~. l& M$ x$ F' Z1 G& [
phpmyadmin/themes/darkblue_orange/layout.inc.php7 R5 J! G. q$ s# z
4.利用搜索引擎爆绝对路径
! B7 d0 V; u9 X$ [) z+ N: L, F9 q9 Gsite:www.huangse.com Warning
8 l# {% P6 c) X9 D7 V5 bsite:www.huangse.com inurl:Warning0 B" c" W0 x- ^ G
! J6 z, d+ ~ {等以后慢慢往上补吧,利用单引号的方法俺就不说了。。。
+ {' Q* \/ G7 j |