Burp Suite User Forum

Create new post

Match and Replace

Nirav | Last updated: Aug 22, 2021 04:10PM UTC

Dear Sir, I am trying to match and replace, What i want: ----------------------- Get base URL: http://testphp.vulnweb.com/search.php?test=query I want http://testphp.vulnweb.com/search.php?test=query"><script>alert(12)</scritp> but i get http://testphp.vulnweb.com/search.php?test="><script>alert(12)</scritp> I don't want to remove the parameter value. ----------------------- Post Base: G=a1 i want G=a1"><script>alert(12)</scritp> but in match and replace i get G="><script>alert(12)</scritp> anyhow I don't want to remove parameter values in Get Base and Post Base. --------------------- Can you tell me some solution ..? Thanks

Uthman, PortSwigger Agent | Last updated: Aug 23, 2021 09:36AM UTC

Hi Nirav, You can use the 'CSTC, Modular HTTP Manipulator' or 'Reshaper' extension to achieve this. - https://portswigger.net/bappstore/866df66d339d4bcd9b599772aff32efd - https://portswigger.net/bappstore/7bcec7656b5746e9a85c427f243e6d5a Please give either a try and let us know how you get on.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.