2 Videos for DOMPDF RCE III
This video requires PentesterLab PRO
GO PRO
DOMPDF RCE III: Introduction
In this video, we delve into the DOMPDF RCE III challenge, which is part of the Media Badge series. We explore how a web application uses DOMPDF to generate PDFs and how an attacker can exploit this process to achieve remote code execution.
This video requires PentesterLab PRO
GO PRO
DOMPDF RCE III: Exploitation
In this video, we cover the DOMPDF RCE III challenge from the Media Badge. We demonstrate how to exploit the vulnerability by uploading a specially crafted PHAR file, creating a web shell on the target server, and achieving Remote Code Execution (RCE).