add 文件上传内容检测绕过

This commit is contained in:
Mrxn 2020-06-20 14:50:20 +08:00
parent 9e6cc77dbf
commit c4a74c7e8f

View File

@ -106,9 +106,10 @@ Content-Type: multipart/form-data; boundary =---------------------------47146314
```
`boundary`后面加入空格。
12.修改编码绕过
使用`UTF-16``Unicode``双URL编码`等等
使用`UTF-16``Unicode``双URL编码`等等
13.WTS-WAF 绕过上传
原内容:
```
Content-Disposition: form-data; name="up_picture"; filename="xss.php"
```