Burp Suite User Forum

Create new post

Find the SQL injection in Damn Vulnerable Web App (DWVA) on the High difficulty

Alex | Last updated: Apr 21, 2021 04:44AM UTC

Find the SQL injection in Damn Vulnerable Web App (DWVA) on the High difficulty? The value is entered into the popup window, which is invoked by clicking on the link with the popUp open javascript method. The result is shown in the popup window (Session ID: N) and in the main parent window (the actual result of the request). The values are passed via $_SESSION['id'].

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.