File upload vulnerability upload-libs pass3

File upload vulnerability upload-libs pass3

First, the source code is observed
Here Insert Picture Description
observed that use of the rear end of the filter, the filter file .asp .aspx .php .jsp
i.e. blacklist file may be used as the outer blacklist .php4 .php5

I passed up the php5 found to be unenforceable, search, I found that because my server configuration file is not php5
If the Apache server's configuration file upload-libs where there is php5
can be successful
Here Insert Picture Description
Here Insert Picture Description
because my server is nginx, so to get here
You know the way to

Released four original articles · won praise 0 · Views 37

Guess you like

Origin blog.csdn.net/qq_43536831/article/details/104380116