1 Star 2 Fork 0

xieqiang / cve

加入 Gitee
与超过 1200万 开发者一起发现、参与优秀开源项目,私有仓库也完全免费 :)
免费加入
克隆/下载
IBOS oa v4.5.5 upload.md 522 Bytes
一键复制 编辑 原始数据 按行查看 历史
xieqiang 提交于 2023-03-27 09:28 . update cve/IBOS oa v4.5.5 upload.md.

IBOS v4.5.5 File upload bypass

download link:https://gitee.com/ibos/IBOS

You can't set the.php suffix here, but you can bypass it by setting the.htaccess suffix.

输入图片说明

The.htaccess content is as follows

输入图片说明

Then we will upload a 1.gif file containing one sentence

输入图片说明

Finally, visit 1.gif to get getshell

输入图片说明

1
https://gitee.com/xieqiangweb/cve.git
git@gitee.com:xieqiangweb/cve.git
xieqiangweb
cve
cve
master

搜索帮助