ECMall uses webshell in the background

Source: Internet
Author: User

Kiyou asked me to look at an ECMall site and ask for webshell in the background.
I am sending my thoughts
First of all, I used ECMall to get shell in the background for the first time.
So take a look
Found a pendant Management
Editable File

Then select the last edit register to join and register button to log on.
Edit script for element review
<A href = "www.2cto.com index. php? App = widget & act = edit & name = register_and_apply & file = script "> edit script </a>
Name = register_and_apply: The name of a folder is displayed.
Then download the source code
Find this path
Found by using the search function

Then I found two PHP script files.

SO
View the source code of these two script files
The main. widget. php file is the same as the source code of the file we edited on the website.


The path for editing the file is external \ widgets \ register_and_apply \ main. widget. php.
Then it will be okay to modify it into one sentence.
Get the shell and give it back.
Haha
Do not destroy website files
Requirements of kiyou

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.