Cross Site Scripting (XSS) using POST parameters: a practical example
Super Discount at 's shop!
use our search form to get a 30% discount!!!
name=submit and name=item_code are the minumum required parameter that the target website accepts for the POST request. the file http://