中国网络渗透测试联盟
标题:
fckeditor漏洞
[打印本页]
作者:
admin
时间:
2012-9-13 17:02
标题:
fckeditor漏洞
, Y& Y' u4 l2 R6 u$ g' W8 T& V
fckeditor/editor/filemanager/browser/default/browser.html?Type=Image&Connector=connectors/asp/connector.asp
/ n, g, f* I# p% z8 B
http://www.china-photo-model.com ... aspx/connector.aspx
) ], {1 G; q; B; ?' I A/ e0 R3 a* z
" f' ], Q% e+ y, h8 k/ @0 s m( l/ ]
+ y. ~ n9 o. ]7 _
http://yeni.kadikoy.bel.tr/globa ... ctors/jsp/connector
8 [0 R3 _' t% k! Q' x
1 G- X) M, k: K8 ^4 ?0 q4 j
" E+ u8 [; ~% C0 |7 [0 {9 V
+ P0 m* H9 e; i# \6 k& v
& o7 I% Z7 k0 A( G
/ g2 p% E# s, k* c8 E i: ?. k' L
查看配置和列出目录下的文件.
9 c, p0 u! S( L' {
2 n4 M( } ]& t7 C
: A' x- a' {3 Z. q4 y, {' q @5 y
http://www.xxx.com/fckeditor/edi ... p;CurrentFolder=%2F
7 f" y% O- s% x, H! U S
http://www.xxx.com/fckeditor/edi ... p;CurrentFolder=%2F
* B e( J! g" j
6 E% X/ X. W# x0 C
上传地址:
- X: w: P+ i2 v! A
1 P9 r% j! U# N* T7 t' Q
http://www.xxx.com/fckeditor/edi ... p;CurrentFolder=%2F
7 e8 g! P, z- c( D' {9 g( |4 V) E9 E. i
http://www.xxx.com/fckeditor/edi ... ctors/jsp/connector
../为根目录
欢迎光临 中国网络渗透测试联盟 (https://www.cobjon.com/)
Powered by Discuz! X3.2