Loading
0

CVE-2020-21585 Emlog v6.0.0 ZIP插件Getshell

PWNWIK.COM

,

漏洞利用

http://x.x.x.x/emlog/src/admin/plugin.php
编辑一个ZIP包,包含xx/xx.php

http://127.0.0.1/emlog/src/content/plugins/abc/abc.php

PWNWIK.COM