[Network Security] Detailed analysis of xss-labs level-19 problem solving

Readers can refer to and subscribe to the column: Xss-Labs shooting range offensive and defensive combat


posture

Logical backend code:

insert image description here
This question involves flash xss knowledge points


flash xss

Flash XSS (Cross-Site Scripting) refers to cross-site scripting attacks against applications developed using Adobe Flash technology.

Flash is a widely used technology for creating rich media and interactive content. Malicious Flash files are embedded into trusted web pages. When a user visits a page containing a malicious Flash file, the Flash file will be displayed in the user's browser. implement.


Due to the browser's flash problem, this question will not be described in detail.

POC:

arg01=version&arg02=<a href="javascript:alert(1)">xss</a>

Summarize

The above is the detailed analysis of [Network Security] xss-labs level-19 problem solving, and the detailed analysis of [Network Security] xss-labs level-20 problem solving will be shared later.

I am Qiu said , see you next time.

Guess you like

Origin blog.csdn.net/2301_77485708/article/details/132107160