SSRF
Basic SSRF
VIPView lab →SSTI
Basic SSTI
VIPView lab →Command Injection
Basic Command Injection
FreeView lab →Command Injection
Command Injection Filter Bypass
FreeView lab →Command Injection
Command Injection Improved Filter Bypass
VIPView lab →Command Injection
Command Injection in Perl-Based Stock Control System
VIPView lab →Command Injection
Command Injection via User-Agent Log Entries
VIPView lab →File Inclusion
Basic Local File Inclusion
FreeView lab →File Inclusion
Local File Inclusion Filter Bypass
FreeView lab →File Inclusion
Basic Remote File Inclusion
FreeView lab →SQL Injection
Basic SQL Injection
FreeView lab →SQL Injection
Union-Based SQL Injection
FreeView lab →SQL Injection
Boolean-Based Blind SQL Injection
FreeView lab →SQL Injection
Time-Based Blind SQL Injection
VIPView lab →SQL Injection
Error-Based SQL Injection
VIPView lab →Unrestricted File Upload
Basic Unrestricted File Upload
FreeView lab →Unrestricted File Upload
MIME Type Filter Bypass
FreeView lab →Unrestricted File Upload
File Signature Filter Bypass
FreeView lab →Unrestricted File Upload
File Extension Filter Bypass
FreeView lab →Unrestricted File Upload
File Extension Improved Filter Bypass
VIPView lab →XXE
Basic XXE
VIPView lab →CSRF
Change Password (CSRF)
FreeView lab →CSRF
Money Transfer (CSRF)
FreeView lab →Authentication
Dictionary Attack
FreeView lab →Authentication
Execution After Redirect (EAR)
FreeView lab →Business Logic
Discount Code
VIPView lab →Business Logic
Web Shell Upload
VIPView lab →IDOR
Invoices
FreeView lab →IDOR
Ticket Sales
FreeView lab →IDOR
Change Password
FreeView lab →IDOR
Money Transfer
VIPView lab →IDOR
Update Account
VIPView lab →Cross-Site Scripting
Reflected XSS
FreeView lab →Cross-Site Scripting
Stored XSS
FreeView lab →Cross-Site Scripting
DOM-Based XSS
FreeView lab →Cross-Site Scripting
Reflected XSS via HTML Attribute Manipulation
VIPView lab →Cross-Site Scripting
Stored XSS in Anchor Href Attribute HTML-Encoded
VIPView lab →Cross-Site Scripting
Manipulating Images with the HTML Href Attribute
VIPView lab →Cross-Site Scripting
Stored XSS via User Agent
VIPView lab →Cross-Site Scripting
Stored XSS Vulnerability via Image Upload-Induced
VIPView lab →