<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>解析 &#8211; ChaBug安全</title>
	<atom:link href="/tags/%E8%A7%A3%E6%9E%90/feed" rel="self" type="application/rss+xml" />
	<link>/</link>
	<description>一个分享知识、结识伙伴、资源共享的博客</description>
	<lastBuildDate>Thu, 17 May 2018 12:49:35 +0000</lastBuildDate>
	<language>zh-CN</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=5.5.5</generator>
	<item>
		<title>记一次毫无亮点的私服服务器渗透+提权</title>
		<link>/web/346.html</link>
		
		<dc:creator><![CDATA[Y4er]]></dc:creator>
		<pubDate>Wed, 31 Jan 2018 19:44:00 +0000</pubDate>
				<category><![CDATA[渗透测试]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[实战]]></category>
		<category><![CDATA[渗透]]></category>
		<category><![CDATA[解析]]></category>
		<guid isPermaLink="false">/?p=127</guid>

					<description><![CDATA[毫无亮点的一次渗透经历这吊毛，什么几把站点都往我这仍！哇！看到这个我就想起了：“大家好，我系渣渣辉。”御剑扫一波,发现上传点。习惯性burp抓包思密达先go一下发现正常上传。标重点...]]></description>
										<content:encoded><![CDATA[<p>毫无亮点的一次<span class="wpcom_tag_link"><a href="/tags/%e6%b8%97%e9%80%8f" title="渗透" target="_blank">渗透</a></span>经历<br /><img src="/wp-content/uploads/2018/01/1054833045.png" alt="1.png" title="1.png"><br />这吊毛，什么几把站点都往我这仍！<br /><img src="/wp-content/uploads/2018/01/572101772.png" alt="2.png" title="2.png"><br />哇！看到这个我就想起了：“大家好，我系渣渣辉。”<br />御剑扫一波,发现上传点。<br /><img src="/wp-content/uploads/2018/01/2578795906.png" alt="3.png" title="3.png"><br />习惯性burp抓包思密达<br /><img src="/wp-content/uploads/2018/01/3590825814.png" alt="4.png" title="4.png"><br />先go一下发现正常上传。标重点，apache2.4的web容器，直接<span class="wpcom_tag_link"><a href="/tags/%e8%a7%a3%e6%9e%90" title="解析" target="_blank">解析</a></span>漏洞改后缀为<code>.PHP</code>上传即可<br /><img src="/wp-content/uploads/2018/01/29498286.png" alt="5.png" title="5.png"><br />完全哦你妈的蛇皮棒棒K<br /><img src="/wp-content/uploads/2018/01/4021494741.png" alt="6.png" title="6.png"><br />菜刀链接<br /><img src="/wp-content/uploads/2018/01/1493658059.png" alt="7.png" title="7.png"><br /><img src="/wp-content/uploads/2018/01/1156966701.png" alt="8.png" title="8.png"><br />wamp搭建的，权限很大。直接<code>net user</code>就行了<br />附张合照<br /><img src="/wp-content/uploads/2018/01/3245780212.png" alt="9.png" title="9.png"></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
