Beyond Printers
From Hacking Printers
First: "Tiger Test"
If the website allows image uploads, try renaming tiger.eps to tiger.jpg and upload it (works if ImageMagick's "convert" is used in the background and the web application does not check the file header, see ImageTragick)
If the website allows PDF uploafs, try renaming tiger.eps to tiger.pdf and upload it (works if Ghostscript is used in the background and the web application does not check the file header, %PDF- is okay!)
Web Applications
-> just use cheat sheet, look at conversion result
Print Servers
-> just use cheat sheet, look at printed document
Desktop Applications
-> harder because of backchannel; thunderbird-convert? Hard to get a backchannel if no CVE