📙
AppSec
search
⌘Ctrlk
📙
AppSec
  • Overview
  • Write Ups Compilations/Resources
  • Main Resources
  • Labs
  • Cross Site Request Forgery
    • Cross Site Request Forgery (CSRF)
  • Missing Access Controls
    • Missing Access Controls
  • LFI / Directory Traversal
    • Local File Inclusion
      • Local File Inclusion Writeups
      • Source Code Examples
      • Labs
  • XXE
    • XML External Entity (XXE)
  • Injection
    • Command Injection
    • Server-Side Template Injection
    • SQL Injection
  • SSRF
    • Server-Side Request Forgery (SSRF)
  • Unvalidated Redirects and Forwards
    • Unvalidated Redirects and Forwards
  • Verbose Error Messages and Stack Traces
    • Verbose Error Messages and Stack Traces
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. LFI / Directory Traversalchevron-right
  2. Local File Inclusion

Labs

LogoLab: File path traversal, simple case | Web Security AcademyWebSecAcademychevron-right
LogoLab: File path traversal, traversal sequences blocked with absolute path bypass | Web Security AcademyWebSecAcademychevron-right
LogoLab: File path traversal, traversal sequences stripped non-recursively | Web Security AcademyWebSecAcademychevron-right
LogoLab: File path traversal, traversal sequences stripped with superfluous URL-decode | Web Security AcademyWebSecAcademychevron-right
LogoLab: File path traversal, validation of start of path | Web Security AcademyWebSecAcademychevron-right
LogoLab: File path traversal, validation of file extension with null byte bypass | Web Security AcademyWebSecAcademychevron-right

PreviousSource Code Exampleschevron-leftNextXML External Entity (XXE)chevron-right

Last updated 5 years ago

Was this helpful?

Was this helpful?