技术文章阅读-huawei-sn-20170911-01-hg255s-en

https://github.com/Mr-xn/Penetration_Testing_POC/blob/master/tools/huaweihg255-traversal.rb

不过有点奇怪的是poc是这样的

/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd

  

可能是代码里处理路由的地方有问题

原文地址:https://www.cnblogs.com/junmoxiao/p/13878314.html