IIS 7.5 + FCK editor + burp suite use webshell
I have a dish, so do not spray it.
Figure:
A Vietnamese dog website looked at by many people. It was estimated that all of them were kneeling down here. I tried many other people and could not upload them. I looked at IIS7.5, and it was no wonder they were stuck here, as a result, xiaobian directly uploads the artifact Burp Suite...
Truncate the content. Then, the truncated data packet is thrown into the repeater.
The name is changed to the following:
Then I submitted the statement. The result is tragic and the underline is changed.
However, some people will give up because of this, but I am a child who is not afraid of difficulties. As a result, I click submit again, and the result is surprising.
Bypass successful
No technical content, making everyone laugh
I almost confessed to this trojan login page.
Solution: Filter