FengCms1.32系统重装漏洞导致getshell

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

进入./install/index.php文件 ``` <?php /******************************************************************* * @authors FengCms * @web http://www.fengcms.com * @email web@fengcms.com * @date 2013-10-30 16:00:12 * @version FengCms Beta 1.0 * @copy Copyright © 2013-2018 Powered by DiFang Web Studio *******************************************************************/ // header("Content-type:text/html;charset=utf-8"); define("TPL_INCLUDE",1); // 定义当前路径 define('ABS_PATH',dirname(__FILE__)); define('ROOT_PATH',dirname(ABS_PATH)); if(!['step'])['step']=1; =ROOT_PATH.'/config.php'; =ABS_PATH.'/install.sql'; if(file_exists(ROOT_PATH.'/upload/INSTALL')){ echo '<script type="text/javascript">alert("系统已安装,如需要重新安装,请手工删除upload目录下的INSTALL文件!");</script>'; echo '<meta http-equiv="refresh" content="0;url=/">'; } switch(['step']){ case '1': //安装许可协议 include ABS_PATH."/step/step1.php"; break; case '2': //检查安装环境是否满足要求 = ''; if(extension_loaded('gd')) { if(function_exists('imagepng')) .= 'png';...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息