http://www.example.com/list.php?page=<script>alert("MajorSecurity")</script>