当前位置:网站首页>xxe of CTF
xxe of CTF
2022-08-02 04:01:00 【SevenCold】
xxe vulnerability means that we can inject external entities. When external entities are allowed to be referenced, by constructing malicious content, it can lead to reading arbitrary files, executing system commands, detecting intranet ports, and attacking intranet websites.
Two writeups
Question 1:
bp packet capture
Then you can perform xml injection
This is two xxe, let's try first and secondSpecies (because the source code does not mark which file the flag is in)
Then enter the intranet
However, if you can't get in, you can only find a surviving host.
Direct Violent Search
Question 2:
Follow the idea of the question above
But noFind the flag....
Finally, I can only find it in the file, but the title does not indicate which file the specific flag is in, so I can only try the /flag file
It turned out to be
边栏推荐
- (1) print()函数、转义字符、二进制与字符编码 、变量、数据类型、input()函数、运算符
- (1)Thinkphp6入门、安装视图、模板渲染、变量赋值
- JS objects, functions and scopes
- Warzone: 3 (Exogen) vulnhub walkthrough
- hackmyvm: again walkthrough
- (3) 字符串
- Turn trendsoft/capital amount of Chinese capital library
- Advanced Operations on Arrays
- [mikehaertl/php-shellcommand]一个用于调用外部命令操作的库
- PHP8.2中字符串变量解析的新用法
猜你喜欢
DVWA drone installation tutorial
VIKINGS: 1 vulnhub walkthrough
The Error in the render: "TypeError: always read the properties of null '0' (reading)" Error solution
hackmyvm: kitty walkthrough
TypeScript error error TS2469, error TS2731 solution
(4) 函数、Bug、类与对象、封装、继承、多态、拷贝
[league/climate]一个功能健全的命令行功能操作库
利用cookie获取admin权限 CTF基础题
(3) string
Shuriken: 1 vulnhub walkthrough
随机推荐
VIKINGS: 1 vulnhub walkthrough
web渗透必玩的靶场——DVWA靶场 1(centos8.2+phpstudy安装环境)
PHP8.2 version release administrator and release plan
PHP Foundation March Press Announcement Released
(1) print()函数、转义字符、二进制与字符编码 、变量、数据类型、input()函数、运算符
[league/climate] A robust command-line function manipulation library
利用cookie获取admin权限 CTF基础题
Masashi: 1 vulnhub walkthrough
[trendsoft/capital]金额转中文大写库
hackmyvm: again walkthrough
Basic use of v-on, parameter passing, modifiers
13.JS输出内容和语法
Phpstudy安装Thinkphp6(问题+解决)
PHP image compression to specified size
(2)Thinkphp6模板引擎**标签
hackmyvm: kitty walkthrough
Advanced Operations on Arrays
kali安装IDEA
Smart Tips for Frida Scripting in Kali Environment
c语言用栈实现计算中缀表达式