Ir al contenido
Home
CTFs resueltos
PicoCTF
PicoCTF 2025 writeup
PicoCTF 2024 writeup
PortSwigger Lab Writeups
Menú
Home
CTFs resueltos
PicoCTF
PicoCTF 2025 writeup
PicoCTF 2024 writeup
PortSwigger Lab Writeups
Categoría:
writeups
Basic SSRF against another back-end system
OS command injection, simple case
DOM XSS in jQuery anchor href attribute sink using location.search source
CSRF where token validation depends on request method
CSRF vulnerability with no defenses
DOM XSS in innerHTML sink using source location.search
DOM XSS in document.write sink using source location.search
Stored XSS into HTML context with nothing encoded
Reflected XSS into HTML context with nothing encoded
File path traversal, validation of file extension with null byte bypass
←
Anterior
Siguiente
→