File upload and file inclusion vulnerabilities

In this section, we will discuss various security vulnerabilities that allow an attacker to perform file upload, code execution, and file inclusion attacks on a web server.

In the following sections, we will cover the fundamentals of the following topics:

  • Cross-Site Scripting (XSS)
  • Cross-Site Request Forgery (CSRF)
  • Structured Query Language injection (SQLi)
  • Insecure deserialization
  • Common misconfigurations
  • Vulnerable components
  • Insecure direct object reference

Let's dive in!

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.222.67.251