Reflected XSS with AngularJS sandbox escape without strings (Video solution, Audio)

preview_player
Показать описание
This video shows the lab solution of "Reflected XSS with AngularJS sandbox escape without strings" from Web Security Academy (Portswigger)

Рекомендации по теме
Комментарии
Автор

nice video bro, u literally typed in the solution posted.

rootaccess
Автор

Hello, I don't understand this line:
[123]|orderBy:'Some string'
I understand that it is used to avoid the usage of $eval() and [123] does not matter but I don't understand how the expression can be executed.

salt
Автор

Useless video !! No explanation Only Copy Paste !

dhirajchaudhary
welcome to shbcf.ru