Lab: Exploiting XXE using external entities to retrieve files
Lab Scenario: Our mission is to exploit XXE through a web application's "Check stock" feature, specifically using external entities to retrieve files. By intercepting and manipulating a POST request, we intend to use XXE to trigger the retrieval of s...
joelodey.hashnode.dev2 min read