1.测试test.php info.php php_info.php phpinfo.php5 l' z0 |0 m# L* n3 Z
& M6 m* G/ N. c9 U4 r% C2.扫描看有没有fck编辑器,如果有就用fckeditor\editor\dialog\fck_spellerpages\spellerpages\server-scripts\spellchecker.php爆1 t; K5 t7 n* W7 l$ K
. l: k6 h8 h+ q- m" N n5 D1 B
3.看看有没有phpmyadmin或者phpMyAdmin利用phpMyAdmin/libraries/select_lang.lib.php, W3 D; K P- v( z& X
phpMyAdmin/darkblue_orange/layout.inc.php
- d( }! m0 e& YphpMyAdmin/index.php?lang[]=1
" s2 J/ d$ Z' B# L1 zphpmyadmin/themes/darkblue_orange/layout.inc.php
# o6 j: ^! P" w7 ]; z' m4.利用搜索引擎爆绝对路径
, x# \" N( j% ]6 |) K( tsite:www.huangse.com Warning) j- h6 ?+ i! ^/ ?
site:www.huangse.com inurl:Warning
2 m8 x) X8 Z; ~0 W+ n/ s4 w0 [1 Z8 v# K. q. ]) E* c
等以后慢慢往上补吧,利用单引号的方法俺就不说了。。。
7 @0 ?& [# E! O9 B |