htmlinject.jsp

来自「《精通JSP编程 》源代码(赵强那本) 很有用的源代码」· JSP 代码 · 共 79 行

JSP
79
字号
<html>

  <head>

    <title>Testing for HTML injection</title>

  </head>

  <body>



    Use the below forms to expose a   HTML injection vulnerability

    <br><br>



    <!-- Begin GET Method Search Form -->

   




    <!-- Begin POST Method Search Form -->

    <table border="1">

      <tr>

        <td>

           Enter your search query (method="post"): 



          <form method="post">

            <input type="text" name="queryString2" width="20"

                   value="<%= request.getParameter("queryString2")%>"

            >

            <input type="hidden" name="hidden2" value="hiddenValue2">

            <input type="submit" name="submit2" value="Search">

          </form>

        </td>

        <td>

          queryString2 = <%= request.getParameter("queryString2") %><br>

          hidden2 =      <%= request.getParameter("hidden2") %><br>

          submit2 =      <%= request.getParameter("submit2") %><br>

        </td>

      </tr>

    </table>

    <!-- End POST Method Search Form -->



   



  </body>

</html>

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?