摘要: 超文本标记语言文本 .html,.html text/html 普通文本 .txt text/plain RTF文本 .rtf application/rtf GIF图形 .gif image/gif JPEG图形 .jpeg,.jpg image/jpeg au声音文件 .au audio/bas 阅读全文
posted @ 2020-07-06 14:35 vcxvxcv 阅读(114) 评论(0) 推荐(0)
摘要: How bypass it? - Change filename [1.jpg] to [1.html]. - Change Content-Type [image/jpeg] to [plain/html]. - Payload: <script>alert(1)</script> 阅读全文
posted @ 2020-07-06 07:45 vcxvxcv 阅读(352) 评论(0) 推荐(0)