Hereisashort example of some of the mappings ASPmakesforthe left anglebracketandsingletick mark characters: ... actually become valid JavaScript code that the web browser would execute: alt;scriptagt;eval(a#39;alert(aquot;XSSaquot;)a#39;)alt;/scriptagt; The issue ... Target value: aquot;\bscr1pt\t/val(a#39;al/rt(aquot;XSSaquot;)\xc8))/scr1pt*aquot; Operator completedin 1 usec.
Title | : | Web Application Defender's Cookbook |
Author | : | Ryan C. Barnett |
Publisher | : | John Wiley & Sons - 2013-01-04 |
You must register with us as either a Registered User before you can Download this Book. You'll be greeted by a simple sign-up page.
Once you have finished the sign-up process, you will be redirected to your download Book page.
How it works: