Theme Layout

Boxed or Wide or Framed

Wide

Theme Translation

Display Featured Slider

Featured Slider Styles

Display Grid Slider

yes

Grid Slider Styles

Display Trending Posts

Display Author Bio

Display Instagram Footer

off

Dark or Light Style

Light
Powered by Blogger.

Thursday, December 22, 2016

HTML Injection - Reflected (GET)


# Introduction.

 : BWAPP → Low → HTML Injection - reflected (GET) 



# Training.

 This 'html_get.php' is a page that prints the user's input value as follows.


And If you check the URL, you can see that the input value and variable name are exposed in the URL. Because it is the GET method.



In order to test the input items, I inserted HTML tags in the First name and Last name.
  • <h1> Success</h1>
  • <img src=http://192.168.10.119/bWAPP/images/bee_1.png>

The input result is as follows.






QuickEdit
Unknown
0 Comments
Share This Post :

You Might Also Like

No comments:

Post a Comment

Follow @SunriseSunsetBlog