PHP 7.0-7.3 disable_functions bypass

PHP 7.0-7.3 disable_functions bypass

利用漏洞绕过disable_functions并执行系统命令。在Ubuntu/CentOS/FreeBSD系统服务中的cli/fpm/apache2环境php7.0-7.3版本上进行了测试,证明其工作可靠。

支持

  • 7.0 - all versions to date
  • 7.1 - all versions to date
  • 7.2 - all versions to date
  • 7.3 - all versions to date

关注:https://github.com/mm0r1/exploits/blob/master/php7-gc-bypass/exploit.php