phpdisk V7 (20140604) 注入一枚 (直接出数据)

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 简要描述: 20140604 ### 详细说明: 在ajax.php中 ``` else{ $file = unserialize(base64_decode($data)); /*foreach($file as $k=>$v){ $file[$k] = $db->escape($file[$v]); }*/ $file[file_id] = (int)$file[file_id]; $file[file_size] = (int)$file[file_size]; $file[file_description] = $db->escape(trim($file[file_description])); $file[file_extension] = $db->escape(trim($file[file_extension])); $file[file_name] = $db->escape(trim($file[file_name])); $num = @$db->result_first("select count(*) from {$tpf}files where yun_fid='{$file[file_id]}' and userid='$pd_uid'"); if($num && $file[file_id]){ $tmp_ext = $file[file_extension] ? '.'.$file[file_extension] : ''; $msg = $file[file_name].$tmp_ext; }else{ $report_status =0; $report_arr = explode(',',$settings['report_word']); if(count($report_arr)){ foreach($report_arr as $value){ if (strpos($file['file_name'],$value) !== false){ $report_status = 2; } } } $ins = array( 'yun_fid' => $file[file_id], 'file_name' => $file[file_name], 'file_key' => $file_key,...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息