Tag: OOB

1 post

Exploiting XXE with local DTD files

This little technique can force your blind XXE to output anything you want!

 40992   2018   DTD   OOB   WAF   XML   XXE