Iis7.5 plus fck parsing vulnerability fetching shell in the background

IIS 6.0 parsing vulnerability can be uploaded to a.asp Jps or a.asp; a. Any format pony will be parsed when it is transferred from the jpg or a.asp directory

This time we are talking about the IIS7.5 parsing vulnerability,

http://www.sbmonkey.com/fckeditor/editor/fckeditor.html

Upload pictures, browse, and upload an aspx one sentence trojan named a.aspx.a a.aspx.jpg.. jpg,

After uploading, you can get the upload address directly, and the kitchen knife connection is OK

Original article reprint please specify: reprint from Seven Travelers Blog

Fixed link of this article: https://www.qxzxp.com/3482.html

Iis7.5 plus fck parsing vulnerability, get the shell in the background: waiting for you to sit on the sofa!

Comment

7 + 8 =

Shortcut key: Ctrl+Enter