Vishwa CTF 2022: Hey Buddy¶
link : https://h3y-buddy.vishwactf.com
kata kunci
python flask Server-Side Template Injection (SSTI)
Bacaan¶
- https://medium.com/@nyomanpradipta120/ssti-in-flask-jinja2-20b068fdaeee
- https://infosecwriteups.com/tokyowesterns-ctf-4th-2018-writeup-part-3-1c8510dfad3f
Vulnerable¶
-
*penjelasan ada pada referensi bacaan