[TamperData] "prefill.static.data.Big Text" = "asdfrasdfasfdASDFASDFASDFasdfasdfasdfASDFASDFASDFasdfasdfasdfASDFASDFASDFasdfasdfasdfASDFASDFASDF" "prefill.static.xss.object Alert" = "" "prefill.static.xss.> Alert" = ">"'>" "prefill.dynamic.User-Agent.Safari v125 on Mac OS X, cloaked as MSIE" = "" "prefill.dynamic.User-Agent.Internet Explorer 7.0 beta running on Windows Longhorn" = "Mozilla/4.0 (compatible; MSIE 7.0b; Windows NT 6.0)" "debug" = "false" "prefill.static.data.Big Number" = "999999999999999999999999999" "shouldTamperImages" = "true" "prefill.static.xss.no angle brackets alert" = "&{alert('XSS')};" "prefill.dynamic.User-Agent.Links 2.1pre17 under Gentoo Linux" = "Links (2.1pre17; Linux 2.6.11-gentoo-r8 i686; 80x24)" "prefill.dynamic.User-Agent.Safari v125 on Mac OS X" = "Mozilla/5.0 (Macintosh; U; PPC Mac OS X; en) AppleWebKit/124 (KHTML, like Gecko) Safari/125" "prefill.static.sql.integer field select all" = "23 OR 1=1" "prefill.dynamic.User-Agent.Netscape 4.8 on Windows 2000" = "Mozilla/4.8 [en] (Windows NT 5.0; U)" "prefill.dynamic.User-Agent.Opera 8.00 on Gentoo Linux" = "Opera/8.0 (X11; Linux i686; U; cs)" "prefill.static.xss.%2B Alert" = "%22%2Balert(%27XSS%27)%2B%22" "prefill.static.xss.Alert" = "" "prefill.dynamic.User-Agent.Lynx 2.8.4rel.1 on Linux" = "Lynx/2.8.4rel.1 libwww-FM/2.14" "prefill.static.data.Letters" = "abcdefABCDEF" "prefill.dynamic.User-Agent.w3m on FreeBSD" = "w3m/0.5.1" "prefill.dynamic.User-Agent.Crawler for Ask Jeeves/Teoma" = "Mozilla/2.0 (compatible; Ask Jeeves/Teoma)" "prefill.static.data.Zero" = "0" "prefill.static.xss.%22 Alert" = ">%22%27>" "prefill.dynamic.User-Agent.Opera 6.03 on Windows 2000, cloaked as MSIE" = "Mozilla/4.0 (compatible; MSIE 5.0; Windows 2000) Opera 6.03 [en]" "prefill.dynamic.User-Agent.Mozilla Firefox 1.0.4 on Windows XP" = "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.8) Gecko/20050511 Firefox/1.0.4" "prefill.static.sql.union" = "' union select * from table" "prefill.static.data.Mixed" = "a0b1c2A3B4C56789@`#&%!?" "prefill.dynamic.User-Agent.Mozilla 1.7.8 on Linux" = "Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.7.8) Gecko/20050511" "prefill.static.sql.drop table" = "x'; DROP TABLE members; --" "prefill.dynamic.User-Agent.Internet Explorer 5.2 on Mac OS X" = "Mozilla/4.0 (compatible; MSIE 5.23; Mac_PowerPC)" "prefill.dynamic.User-Agent.Opera 7.23 on Windows 98" = "Opera/7.23 (Windows 98; U) [en]" "prefill.static.data.Numbers" = "0123456789" "prefill.dynamic.User-Agent.Netscape 7 on Sun Solaris 8" = "Mozilla/5.0 (X11; U; SunOS sun4u; en-US; rv:1.0.1) Gecko/20020920 Netscape/7.0" "prefill.dynamic.User-Agent.Netscape 8.0.1 on Windows XP using MSHTML (with .NET installed)" = "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1" "forceCaching" = "true" "prefill.static.add.Struts cancel" = "org.apache.struts.taglib.html.CANCEL=true" "prefill.static.sql.select all" = "anything' OR 'x'='x" "prefill.dynamic.User-Agent.Googlebot" = "Googlebot/2.1 (+http://www.google.com/bot.html)" "prefill.dynamic.User-Agent.Internet Explorer 6.0 on Windows XP" = "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)" "prefill.static.sql.SELECT * FROM Products WHERE Price < '100.00' ORDER BY ProductDescription;" = "bogus value" "prefill.static.xss.table Alert" = "
" "prefill.dynamic.User-Agent.Links 0.99pre14 under Cygwin on Windows 2000" = "Links (0.99pre14; CYGWIN_NT-5.0 1.5.16(0.128/4/2) i686; 80x25)" "prefill.static.sql.guess specific values" = "SELECT * FROM Products WHERE Price < '100.00' ORDER BY ProductDescription;" "prefill.static.sql.guess table name" = "x' AND 1=(SELECT COUNT(*) FROM tablename); --" "prefill.static.sql.SELECT userid FROM CMSUsers WHERE user = 'foo' AND password = 'bar';" = "bogus value" "prefill.dynamic.User-Agent.ELinks 0.4pre5 on Linux" = "ELinks (0.4pre5; Linux 2.4.27 i686; 80x25)" "prefill.static.sql.like values" = "x' OR full_name LIKE '%admin%" "prefill.dynamic.User-Agent.Mozilla Firefox 1.0.4 on FreeBSD 5.4 on i386" = "Mozilla/5.0 (X11; U; FreeBSD i386; en-US; rv:1.7.8) Gecko/20050609 Firefox/1.0.4" "prefill.dynamic.User-Agent.Off By One 3.5a on Windows XP" = "Mozilla/4.7 (compatible; OffByOne; Windows 2000)" "prefill.static.xss.image Alert" = ">"'>" "prefill.static.sql.update" = "x'; UPDATE tablename SET field1 = 'value' WHERE field1 = 'oldvalue'" "prefill.static.xss.background Alert" = "AK%22%20style%3D%22background:url(javascript:alert(%27XSS%27))%22%20OS%22" "prefill.static.xss.onload Alert" = "" "prefill.dynamic.User-Agent.Konqueror 3.1 (French)" = "Mozilla/5.0 (compatible; Konqueror/3.1; Linux 2.4.22-10mdk; X11; i686; fr, fr_FR)" "shouldAddOverwritesExisting" = "true" "prefill.static.sql.guess field name" = "x' AND fieldName IS NULL; --" "prefill.static.data.Special" = "~!@#$%^&*()_+='`;,.:<>" "prefill.dynamic.User-Agent.Mozilla Firefox 1.0.4 on Ubuntu Linux, on AMD64" = "Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.7.6) Gecko/20050512 Firefox" "prefill.static.sql.insert" = "x'; INSERT INTO tablename ('field1','field2') VALUES ('1','2');--" "prefill.dynamic.User-Agent.Netscape 8.0.1 on Windows XP using Gecko" = "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.5) Gecko/20050519" "prefill.dynamic.User-Agent.Opera 8.00 on Windows XP" = "Opera/8.00 (Windows NT 5.1; U; en)"