DOMPDF RCE III: Exploitation

image of exercise DOMPDF RCE III: Exploitation
Access to videos for this exercise is only available with PentesterLab PRO GOPRO
Spoiler
DOMPDF RCE III: Exploitation

In this video, we cover the DOMPDF RCE III challenge from the Media Badge. We demonstrate how to exploit the vulnerability by uploading a specially crafted PHAR file, creating a web shell on the target server, and achieving Remote Code Execution (RCE).

video duration icon06:46 number of views icon137