Anemone95 / anemone95.github.io

http://anemone.top/
2 stars 1 forks source link

2019“安恒杯”WEB安全测试秋季大赛练习题wp | Anemone's Blog #62

Open Anemone95 opened 4 years ago

Anemone95 commented 4 years ago

https://anemone.top/ctf-2019%E2%80%9C%E5%AE%89%E6%81%92%E6%9D%AF%E2%80%9DWEB%E5%AE%89%E5%85%A8%E6%B5%8B%E8%AF%95%E7%A7%8B%E5%AD%A3%E7%BB%83%E4%B9%A0%E9%A2%98wp/

爱い窒息、痛0x01 路径遍历打开地址看到路径遍历: 在upload文件夹下发现后门和其源码 0x02 后门审计格式化后,进行代码审计 123456789101112131415161718192021222324252627282930313233343536373839404142434445<?php$a = isset($_POST['pass']) ? trim($_POST