Course
In this lab, we explore a PHP code injection vulnerability using the <code>usort</code> function and <code>create_function</code>, which can lead to code execution if not properly filtered and validated. This vulnerability is based on a known issue in PHPMyAdmin (CVE-2008-4096).
Skills covered
Injection
Operating System
CWE-20, CWE-95
Included with PRO
Full course content
2 videos
Common mistakes
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.