THM | AoC 2024 | Day 01-08
· 7 min read
XXE (XML External Entity) is a type of web vulnerability that allows an attacker to inject malicious XML code into a vulnerable application, potentially disclosing sensitive data, executing arbitrary commands, or even taking control of the system. This occurs when the application incorrectly parses external XML entities, allowing attackers to inject and execute their own code.
View All Tags