1.测试test.php info.php php_info.php phpinfo.php
1 O4 @" u* c' @2 K! o+ h8 n. N- F6 [! g) F% K h- J
2.扫描看有没有fck编辑器,如果有就用fckeditor\editor\dialog\fck_spellerpages\spellerpages\server-scripts\spellchecker.php爆
5 l% s1 a5 e, E+ f! I" @" F
5 W* J* D) T) S/ E3.看看有没有phpmyadmin或者phpMyAdmin利用phpMyAdmin/libraries/select_lang.lib.php
% `8 I9 x9 W8 Z t. ?, PphpMyAdmin/darkblue_orange/layout.inc.php- l, [8 ?* U$ G( t
phpMyAdmin/index.php?lang[]=1
) e9 y, h4 ? Y1 `+ W# M$ {phpmyadmin/themes/darkblue_orange/layout.inc.php
5 f; |' X2 R, t$ g4 B2 h1 U4.利用搜索引擎爆绝对路径
0 z' g; a# h, t9 ?$ Isite:www.huangse.com Warning/ m- h# f6 N4 t
site:www.huangse.com inurl:Warning7 y; }& b& e, s0 R: O: t
7 }% i$ O7 X- a& @等以后慢慢往上补吧,利用单引号的方法俺就不说了。。。
8 D0 j* g7 j2 H4 z- U/ l6 _ |