Course
In this challenge, the developer attempted to fix an issue by filtering some special characters. However, the misuse of PHP's <code>system</code> function and inadequate validation led to a vulnerability that can be exploited for command execution.
Skills covered
Injection
Operating System
CWE-77
Included with PRO
Full course content
2 videos
Common mistakes
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.