摘要:
测试方法:提供程序(方法)可能带有攻击性,仅供安全研究与教学之用,风险自负!# Exploit Title: nginx Arbitrary Code Execution NullByte Injection# Date: 24/08/2011# Exploit Author: Neal Poole# Vendor Homepage: http://nginx.org/# Software Link: https://launchpad.net/nginx/0.6/0.6.36/+download/nginx-0.6.36.tar.gz# Version: 0.5.*, 0.6.*, 0.7 阅读全文