Skip to content

Latest commit

 

History

History

Folders and files

NameName
Last commit message
Last commit date

parent directory

..
 
 
 
 
 
 

OWASP Top 10 CTF Challenge - Security Misconfiguration (XML External Entity (XXE)) (Hard)

Host the e0x01.php file and assets folder using a webserver service.

Install the following PHP XML module with

sudo apt install php-xml

The above module is used for parsing the XML input file

Now restart the webserver

Note: Hide put the flag file in /etc/flag

Flag Format

flag: NULL{N0t_s0_h@rd}