1.测试test.php info.php php_info.php phpinfo.php
! s4 Y/ r J8 i9 }
6 A$ u9 }- _! B9 J! q' w9 O D2.扫描看有没有fck编辑器,如果有就用fckeditor\editor\dialog\fck_spellerpages\spellerpages\server-scripts\spellchecker.php爆* V& K/ f; y! D: c2 F
" B0 i# E- X2 d& x* e f& W% ~3.看看有没有phpmyadmin或者phpMyAdmin利用phpMyAdmin/libraries/select_lang.lib.php- b* h" m! \, S7 J5 t
phpMyAdmin/darkblue_orange/layout.inc.php
+ h8 H% A0 ?7 T# a* I" pphpMyAdmin/index.php?lang[]=1
7 Q' J; p7 U" F8 Lphpmyadmin/themes/darkblue_orange/layout.inc.php) K0 e. ^. ?- `% y
4.利用搜索引擎爆绝对路径2 p; z9 e* T. _! ]; b
site:www.huangse.com Warning7 @7 E! b' w8 l
site:www.huangse.com inurl:Warning# X' }/ S9 O& l! q3 L
1 d" T# T- _! A! ]- b: Q等以后慢慢往上补吧,利用单引号的方法俺就不说了。。。
Q9 B* G* Z8 ?( a5 j |