XML External Entity Injection

Описание к видео XML External Entity Injection

Welcome to Bugcrowd University – XML External Entity Injection!
Defined by OWASP: “An XML External Entity attack is a type of attack
against an application that parses XML input. This attack occurs when
XML input containing a reference to an external entity is processed by
a weakly configured XML parser. This attack may lead to the
disclosure of confidential data, denial of service, server side request
forgery, port scanning from the perspective of the machine where the
parser is located, and other system impacts.”

Комментарии

Информация по комментариям в разработке