Cross Site Scripting (XSS) using POST parameters: a practical example



Super Discount at 's shop!

use our search form to get a 30% discount!!!






/members/shop.php method=post>







name=submit and name=item_code are the minumum required parameter that the target website accepts for the POST request. the file http:///index.php may contain