Writeups
-
Medium
Server-side template injection with information disclosure via user-supplied objects
server side template injection in a django template used not for code execution but to leak data
Server-side template injection (SSTI) 3 min -
Medium
Server-side template injection in an unknown language with a documented exploit
server side template injection with no engine named, fingerprinted as handlebars with a polyglot fuzz string
Server-side template injection (SSTI) 4 min -
Easy
Server-side template injection using documentation
server side template injection where the engine is unknown
Server-side template injection (SSTI) 4 min -
Easy
Basic server-side template injection (code context)
server side template injection in a tornado template where your input lands inside an existing expression
Server-side template injection (SSTI) 5 min -
Easy
Basic server-side template injection
basic ssti in an erb template where the message parameter is built into the template source
Server-side template injection (SSTI) 3 min -
Easy
Blind OS command injection with out-of-band data exfiltration
fully blind os command injection taken from confirmation to theft, wrapping whoami in backticks so command substitution splices the username into the hostname of a dns lookup that burp collaborator logs
OS command injection 2 min -
Easy
Blind OS command injection with out-of-band interaction
fully blind os command injection with no readable output, no timing and no writable folder, confirmed by injecting nslookup so the server fires a dns lookup to a burp collaborator subdomain
OS command injection 2 min
Nothing matched that.
No writeups here yet. Try a broader tag, or clear the filter to see everything.
Clear filters