Command injection methods
the idea is to get the server to run the code we injected
this can be done using the following operators:
- semicolon
- new line
- background
- pipe
- AND
- OR
- sub-shell
knowing the programming languages used would help in identifying operators and payloads that work
two main OS to consider: Windows and Linux
Related to
接続ノート / Connected Notes 1
Command injection
ID: 20250708172505
ID: 20250708172505