Загрузка...

How To do Reflected XSS attack in DVWA?

How To do Reflected XSS attack in DVWA?

----
Commands Used
----

1. service apache2 start
2. service apache2 status
3. mkdir -p /var/www/logs
4. chown www-data:www-data /var/www/logs
5. chmod 700 /var/www/logs
6. ls -ld /var/www/logs

----
To Configure CGI Script
----

1. cd /usr/lib/cgi-bin
2. cp 'location of .pl file' '/usr/lib/cgi-bin'
3. chown www-data:www-data log.pl
4. chmod 700 log.pl
5. perl -c log.pl

----
Script to Inject(I was not able to write it here as YouTube don't allow you to add brackets in description )
----

Script - http://pastebin.com/vPTJnf4r

----
Location to check for Stored Cookie
----

/var/www/logs/log
or
ipaddress/logs/log.txt

----
Log.pl
----
Download Link - http://pastebin.com/1uCabwwZ
Note - This video is for educational purpose only.I am not responsible for your acts.

Видео How To do Reflected XSS attack in DVWA? канала Akshay Kishor Chauhan
Яндекс.Метрика

На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.

Об использовании CookiesПринять