变量/php语句/getrenn函数GET http://221.7.196.196:8083/index.php?XDEBUG_SESSION_START=54654&s=/admin/index/login HTTP/1.1
Host: 221.7.196.196:8083
Connection: keep-alive
Cache-Control: max-age=0
Upgrade-Insecure-Requests: 1
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3
Referer: http://221.7.196.196:8083/index.php?s=/admin/index/logout
Accept-Encoding: gzip, deflate
Accept-Language: en-US,en;q=0.9,zh-CN;q=0.8,zh;q=0.7
PHP>>>\$GLOBALS['PG']['token']=getrenn("<input\s+type=\"hidden\"\s+name=\"__token__\"\s+value=\"([^<>]*)\"\s+\/>")[1][0];
//用“PHP”+“>>>”字符代表php语句的开始,可以正常换行
//自定义变量名必页是像这样的定义:\$GLOBALS['PG']['自定义变量名'],注意在定义时注意$要转义符\在前面。
//POST和GET的Raw引用时用 {\$GLOBALS['PG']['cookie']}、 {\$GLOBALS['PG']['自定义变量名']} 等
//支持getrenn函数解释,支持当前cookie用变量 {\$GLOBALS['PG']['cookie']}获得
POST http://221.7.196.196:8083/index.php?XDEBUG_SESSION_START=54654&s=/admin/index/login HTTP/1.1
Host: 221.7.196.196:8083
Connection: keep-alive
Content-Length: 98
Accept: application/json, text/javascript, */*; q=0.01
X-Requested-With: XMLHttpRequest
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Origin: http://221.7.196.196:8083
Referer: http://221.7.196.196:8083/index.php?s=/admin/index/login
Accept-Encoding: gzip, deflate
Accept-Language: en-US,en;q=0.9,zh-CN;q=0.8,zh;q=0.7
token={\$GLOBALS['PG']['token']}&username=admin&password=longsun198899%23&keeplogin=1
POST http://221.7.196.196:8083/index.php?s=/admin/cms/archives/add&dialog=1 HTTP/1.1
Host:221.7.196.196:8083
Connection:keep-alive
Content-Length:229
Accept:application/json, text/javascript, */*; q=0.01
Origin:http://221.7.196.196:8083
X-Requested-With:XMLHttpRequest
User-Agent:Mozilla/5.0 (X11; Linux mips64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3096.2 Safari/537.36
Content-Type:application/x-www-form-urlencoded; charset=UTF-8
Referer:http://221.7.196.196:8083/index.php?s=/admin/cms/archives/add&dialog=1
Accept-Encoding:gzip, deflate
Accept-Language:zh-CN,zh;q=0.8
Cookie:{\$GLOBALS['PG']['cookie']}
row%5Bchannel_id%5D=316&row%5Btitle%5D=test&row%5Bimage%5D=&row%5Bcontent%5D=%3Cp%3Etest%3C%2Fp%3E&row%5Bkeywords%5D=&row%5Bdescription%5D=&row%5Bstatus%5D=hidden&row%5Bpublishtime%5D=2019-08-14+00%3A00%3A00&row%5Bflag%5D%5B%5D=&