当前位置:WooYun(白帽子技术社区) >> xss >> EasyXSS 1.0源代码公开

受到seay的调戏。开源1.0 的
http://wdot.cc/Attack/49.html
我知道1.0写得很烂。哈哈
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
...........用了URL_MODULE=0
访问主页跳转本正确是
http://xx.xx/wwwroot/index.php?s=/User/Register
===自动跳转
http://xxxxxxx/wwwroot/index.php/User/Login
--------然后进行注册看正确构造是
http://198.199.103.119/wwwroot/index.php?s=/User/Register
////默认跳到
http://198.199.103.119/wwwroot/index.php/User/Register -
-
-
-
-
-
-
@Wdot
syntax error, unexpected T_STRING /home/xsscom/public_html/web/xsstw/App/Common/common.php 第 1 行.
错误位置
FILE: /home/xsscom/public_html/web/xsstw/ThinkPHP/Lib/Core/Think.class.php LINE: 246
TRACE
[13-06-04 08:13:06] /home/xsscom/public_html/web/xsstw/ThinkPHP/Lib/Core/Think.class.php (246) halt(syntax error, unexpected T_STRING /home/xsscom/public_html/web/xsstw/App/Common/common.php 第 1 行.)
[13-06-04 08:13:06] /home/xsscom/public_html/web/xsstw/ThinkPHP/Lib/Core/Think.class.php (261) Think::appError(4, syntax error, unexpected T_STRING, /home/xsscom/public_html/web/xsstw/App/Common/common.php, 1)
[13-06-04 08:13:06] () Think::fatalError() -
@YY-2012 求源代码