OWASP Multidae Tutorials - Local File Inclusion (LFI) with Directory Traversal Injection Tutorial

preview_player
Показать описание
This time we use a LFI attack with the help of Burp Suite to intercept a Text file and replace the POST request using directory Traversal for a local file "/etc/passwd"
This attack works very well when a page include is not sanitized correctly.
Рекомендации по теме
Комментарии
Автор

I didn't see any password, I just saw the link

yyysamuel
join shbcf.ru