Course
In this challenge, the developer fixed the previous issue and is now filtering more special characters. However, they forgot that using <code>$(command)</code> can still run commands, leading to potential vulnerabilities.
Skills covered
Injection
Operating System
CWE-77
Included with PRO
Full course content
2 videos
Common mistakes
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.