Difference between revisions of "DedeCMS V5.7 SP2 後台代碼執行漏洞"
From PwnWiki
(Created page with "<languages /> <translate> ==漏洞利用== </translate> <translate> 首先獲取token: <code>domain + /dede/tpl.php?action=upload</code> 通過查看頁面源碼即可...") |
(Marked this version for translation) |
||
| Line 2: | Line 2: | ||
<translate> | <translate> | ||
| − | ==漏洞利用== | + | ==漏洞利用== <!--T:1--> |
</translate> | </translate> | ||
<translate> | <translate> | ||
| + | <!--T:2--> | ||
首先獲取token: <code>domain + /dede/tpl.php?action=upload</code> | 首先獲取token: <code>domain + /dede/tpl.php?action=upload</code> | ||
| + | <!--T:3--> | ||
通過查看頁面源碼即可獲得 token | 通過查看頁面源碼即可獲得 token | ||
</translate> | </translate> | ||
| Line 17: | Line 19: | ||
<translate> | <translate> | ||
| + | <!--T:4--> | ||
然後訪問: | 然後訪問: | ||
</translate> | </translate> | ||