1.测试test.php info.php php_info.php phpinfo.php
4 G4 a% f% V! N8 H; P2 z& Z7 \1 }( o% i+ w* Z
2.扫描看有没有fck编辑器,如果有就用fckeditor\editor\dialog\fck_spellerpages\spellerpages\server-scripts\spellchecker.php爆
# G, H2 d1 s, O7 M; N3 Y% b: n# Z) F" v; f' ?# i- y5 B% g
3.看看有没有phpmyadmin或者phpMyAdmin利用phpMyAdmin/libraries/select_lang.lib.php) F% ]% m( L: r4 N$ Z
phpMyAdmin/darkblue_orange/layout.inc.php; k6 X' L6 Z' O$ I0 u
phpMyAdmin/index.php?lang[]=1
. `& S+ q. I4 `/ Bphpmyadmin/themes/darkblue_orange/layout.inc.php7 {% {/ Y& L4 [/ P7 c# v
4.利用搜索引擎爆绝对路径
4 i9 W& |3 D0 \9 W+ Gsite:www.huangse.com Warning
4 v9 s$ d' R4 ]5 V: Jsite:www.huangse.com inurl:Warning
. `' t: i* K# [+ c' F
3 i, v$ v+ K; Z5 U( y等以后慢慢往上补吧,利用单引号的方法俺就不说了。。。3 x/ f! e: b# N: d# J% q4 H4 O+ R
|