 |
|
 |
PortWatcher's Blog
Monday, 2025-06-30, 10:08 AM Welcome Guest
BlogMain » 2012 » July » 17
文章来源: http://www.portwatcher.net/blog/37_xss/2012-07-17-117By:PortWatcher 假设现在我们有一个XSS,它是通过viewstate来引发的。w3af给出的测试页面是 Code http://www.********.com/auth/Default.aspx?__VIEWSTATE=%2fwEPDwUKLTY4NzcyMTIyMg9kFgICAQ8W Ah4JaW5uZXJodG1sBSY8c2NyaXB0PmFsZXJ0KCdBU1AuTkVU IFhTUycpOzwvc2NyaXB0PmRk 通过burpsuite,可以查看到这个viewstate的值为: Code
Category:
技术文章
|
Views:
1989
|
Added by:
Jury
|
Date:
2012-07-18
|
| |
|
 |