/
home
/
altere25
/
public_html
/
/home/altere25/public_html
mkdir
upload
Name
Size
Mode
Actions
.well-known/
-
0755
rm
cgi-bin/
-
0755
rm
proposal/
-
0755
rm
wp-admin/
-
0755
rm
wp-content/
-
0755
rm
wp-includes/
-
0755
rm
.ftpquotas
91
0644
edit
dl
rm
.htaccess
4732
0644
edit
dl
rm
.htaccess.07122020.bak
4675
0644
edit
dl
rm
.htaccess.07272020.bak
4675
0644
edit
dl
rm
.htaccess.bgb
235
0644
edit
dl
rm
.user.ini
27575
0644
edit
dl
rm
404.shtml
251
0644
edit
dl
rm
AI-Powered Legal Assistance App.zip
208113
0644
edit
dl
rm
boldgrid-backup-demo2.boldgrid.com_trial-81fc043c-2316af9d-20180920-205054.log
480
0644
edit
dl
rm
default.php
3891
0644
edit
dl
rm
email-debug-log.txt
8289265
0644
edit
dl
rm
email-forwarder-debug.php
12220
0755
edit
dl
rm
email-forwarder.php
10503
0755
edit
dl
rm
email-test-log.txt
966084
0644
edit
dl
rm
email-test-simple.php
1225
0755
edit
dl
rm
favicon.ico
4286
0644
edit
dl
rm
index.php
405
0644
edit
dl
rm
license.txt
19903
0644
edit
dl
rm
php.ini
28549
0644
edit
dl
rm
php.ini.bak_07122020
28453
0644
edit
dl
rm
phpinfo.php
21
0644
edit
dl
rm
readme.html
7407
0644
edit
dl
rm
robots.txt
31
0644
edit
dl
rm
sitemap (2).xml
1812
0644
edit
dl
rm
under_construction.html
4871
0644
edit
dl
rm
wp-activate.php
7718
0644
edit
dl
rm
wp-admin.php
0
0644
edit
dl
rm
wp-blog-header.php
351
0644
edit
dl
rm
wp-comments-post.php
2323
0644
edit
dl
rm
wp-config-sample.php
3339
0644
edit
dl
rm
wp-config.php
3264
0644
edit
dl
rm
wp-cron.php
5617
0644
edit
dl
rm
wp-links-opml.php
2493
0644
edit
dl
rm
wp-load.php
3937
0644
edit
dl
rm
wp-loader.php
0
0644
edit
dl
rm
wp-login.php
52536
0644
edit
dl
rm
wp-mail.php
8727
0644
edit
dl
rm
wp-settings.php
33152
0644
edit
dl
rm
wp-signup.php
35081
0644
edit
dl
rm
wp-trackback.php
5396
0644
edit
dl
rm
xmlrpc.php
3205
0644
edit
dl
rm
Edit:
/home/altere25/public_html/wp-trackback.php
(5396B)
<?php /** * Handle Trackbacks and Pingbacks Sent to WordPress * * @since 0.71 * * @package WordPress * @subpackage Trackbacks */ if ( empty( $wp ) ) { require_once __DIR__ . '/wp-load.php'; wp( array( 'tb' => '1' ) ); } // Always run as an unauthenticated user. wp_set_current_user( 0 ); /** * Response to a trackback. * * Responds with an error or success XML message. * * @since 0.71 * * @param int|bool $error Whether there was an error. * Default 0. Accepts 0 or 1, true or false. * @param string $error_message Error message if an error occurred. Default empty string. * @return void Never returns if `$error` is truthy, as the function dies after * sending the error response. * @phpstan-return ( $error is 0|false ? void : never ) */ function trackback_response( $error = 0, $error_message = '' ) { header( 'Content-Type: text/xml; charset=' . get_option( 'blog_charset' ) ); if ( $error ) { echo '<?xml version="1.0" encoding="utf-8"?' . ">\n"; echo "<response>\n"; echo "<error>1</error>\n"; echo '<message>' . esc_xml( $error_message ) . "</message>\n"; echo '</response>'; die(); } else { echo '<?xml version="1.0" encoding="utf-8"?' . ">\n"; echo "<response>\n"; echo "<error>0</error>\n"; echo '</response>'; } } if ( ! isset( $_GET['tb_id'] ) || ! $_GET['tb_id'] ) { $post_id = explode( '/', $_SERVER['REQUEST_URI'] ); $post_id = (int) array_last( $post_id ); } $trackback_url = isset( $_POST['url'] ) ? sanitize_url( $_POST['url'] ) : ''; $charset = isset( $_POST['charset'] ) ? sanitize_text_field( $_POST['charset'] ) : ''; // These three are stripslashed here so they can be properly escaped after mb_convert_encoding(). $title = isset( $_POST['title'] ) ? sanitize_text_field( wp_unslash( $_POST['title'] ) ) : ''; $excerpt = isset( $_POST['excerpt'] ) ? sanitize_textarea_field( wp_unslash( $_POST['excerpt'] ) ) : ''; $blog_name = isset( $_POST['blog_name'] ) ? sanitize_text_field( wp_unslash( $_POST['blog_name'] ) ) : ''; if ( $charset ) { $charset = str_replace( array( ',', ' ' ), '', strtoupper( trim( $charset ) ) ); // Validate the specified "sender" charset is available on the receiving site. if ( function_exists( 'mb_list_encodings' ) && ! in_array( $charset, mb_list_encodings(), true ) ) { $charset = ''; } } if ( ! $charset ) { $charset = 'ASCII, UTF-8, ISO-8859-1, JIS, EUC-JP, SJIS'; } // No valid uses for UTF-7. if ( str_contains( $charset, 'UTF-7' ) ) { die; } // For international trackbacks. if ( function_exists( 'mb_convert_encoding' ) ) { $title = mb_convert_encoding( $title, get_option( 'blog_charset' ), $charset ); $excerpt = mb_convert_encoding( $excerpt, get_option( 'blog_charset' ), $charset ); $blog_name = mb_convert_encoding( $blog_name, get_option( 'blog_charset' ), $charset ); } // Escape values to use in the trackback. $title = wp_slash( $title ); $excerpt = wp_slash( $excerpt ); $blog_name = wp_slash( $blog_name ); if ( is_single() || is_page() ) { $post_id = $posts[0]->ID; } if ( ! isset( $post_id ) || ! (int) $post_id ) { trackback_response( 1, __( 'I really need an ID for this to work.' ) ); } if ( empty( $title ) && empty( $trackback_url ) && empty( $blog_name ) ) { // If it doesn't look like a trackback at all. wp_redirect( get_permalink( $post_id ) ); exit; } if ( ! empty( $trackback_url ) && ! empty( $title ) ) { /** * Fires before the trackback is added to a post. * * @since 4.7.0 * * @param int $post_id Post ID related to the trackback. * @param string $trackback_url Trackback URL. * @param string $charset Character set. * @param string $title Trackback title. * @param string $excerpt Trackback excerpt. * @param string $blog_name Site name. */ do_action( 'pre_trackback_post', $post_id, $trackback_url, $charset, $title, $excerpt, $blog_name ); header( 'Content-Type: text/xml; charset=' . get_option( 'blog_charset' ) ); if ( ! pings_open( $post_id ) ) { trackback_response( 1, __( 'Sorry, trackbacks are closed for this item.' ) ); } $title = wp_html_excerpt( $title, 250, '…' ); $excerpt = wp_html_excerpt( $excerpt, 252, '…' ); $comment_post_id = (int) $post_id; $comment_author = $blog_name; $comment_author_email = ''; $comment_author_url = $trackback_url; $comment_content = "<strong>$title</strong>\n\n$excerpt"; $comment_type = 'trackback'; $dupe = $wpdb->get_results( $wpdb->prepare( "SELECT * FROM $wpdb->comments WHERE comment_post_ID = %d AND comment_author_url = %s", $comment_post_id, $comment_author_url ) ); if ( $dupe ) { trackback_response( 1, __( 'There is already a ping from that URL for this post.' ) ); } $commentdata = array( 'comment_post_ID' => $comment_post_id, ); $commentdata += compact( 'comment_author', 'comment_author_email', 'comment_author_url', 'comment_content', 'comment_type' ); $result = wp_new_comment( $commentdata ); if ( is_wp_error( $result ) ) { trackback_response( 1, $result->get_error_message() ); } $trackback_id = $wpdb->insert_id; /** * Fires after a trackback is added to a post. * * @since 1.2.0 * * @param int $trackback_id Trackback ID. */ do_action( 'trackback_post', $trackback_id ); trackback_response( 0 ); }
Save
cmd:
run