Summary

In this chapter, we discussed various injection flaws. An injection flaw is a serious vulnerability and the attacker can gain complete control over the server by exploiting it. We discussed how a malicious attacker can gain access to the OS shell and then attack other servers on the network. When attackers exploit the SQL injection flaw, they can access sensitive data on the backend database, which can prove fatal to an organization.

In the next chapter, we will discuss cross-site scripting and cross-site request forgery attacks.

Get Web Penetration Testing with Kali Linux - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.