September 2018
Intermediate to advanced
358 pages
9h 6m
English
In this recipe, the insecure XML parser receives the request within the XML for the /etc/passwd file residing on the server. Since there is no validation performed on the XML request due to a weakly-configured parser, the resource is freely provided to the attacker.
Read now
Unlock full access