# | Flag | Box |
---|---|---|
1 | Score Board | Miscellaneous |
2 | Error Handling | Security Misconfiguration |
3 | Login Admin | Injection |
4 | View Basket | Broken Access Control |
5 | Bully Chatbot | Miscellaneous |
6 | CAPTCHA Bypass | Broken Anti Automation |
7 | Confidential Document | Sensitive Data Exposure |
8 | Forged Review | Broken Access Control |
9 | Payback Time | Improper Input Validation |
10 | Privacy Policy | Miscellaneous |
11 | Empty User Registration | Improper Input Validation |
12 | Visual Geo Stalking | Sensitive Data Exposure |
13 | Admin Section | Broken Access Control |
14 | Five-Star Feedback | Broken Access Control |
15 | Meta Geo Stalking | Sensitive Data Exposure |
16 | Exposed Metrics | Sensitive Data Exposure |
17 | Poison Null Byte | Improper Input Validation |
18 | Easter Egg | Broken Access Control |
19 | Login Jim | Injection |
20 | Login Bender | Injection |
21 | Forgotten Sales Backup | Sensitive Data Exposure |
22 | Reset Morty's Password | Broken Anti Automation |
23 | Forgotten Developer Backup | Sensitive Data Exposure |
24 | Password Strength | Broken Authentication |
25 | Zero Stars | Improper Input Validation |
26 | Admin Registration | Improper Input Validation |
27 | Bonus Payload | XSS |
28 | DOM XSS | XSS |
# | Flag | Box |
---|---|---|
1 | DOM XSS | XSS |
2 | Score Board | Miscellaneous |
3 | Bonus Payload | XSS |
4 | Error Handling | Security Misconfiguration |
5 | Forged Feedback | Broken Access Control |
6 | Privacy Policy | Miscellaneous |
7 | Login Admin | Injection |
8 | View Basket | Broken Access Control |
9 | Exposed Metrics | Sensitive Data Exposure |
10 | Admin Registration | Improper Input Validation |
11 | Trofee | Miscellaneous |
12 | Admin Section | Broken Access Control |
13 | Five-Star Feedback | Broken Access Control |
14 | Database Schema | Injection |
15 | Zero Stars | Improper Input Validation |
16 | Meta Geo Stalking | Sensitive Data Exposure |
17 | Empty User Registration | Improper Input Validation |
18 | Easter Egg | Broken Access Control |
19 | Forgotten Sales Backup | Sensitive Data Exposure |
20 | Repetitive Registration | Improper Input Validation |
21 | Poison Null Byte | Improper Input Validation |
22 | Forgotten Developer Backup | Sensitive Data Exposure |
23 | Misplaced Signature File | Sensitive Data Exposure |
24 | Confidential Document | Sensitive Data Exposure |
25 | Exposed credentials | Sensitive Data Exposure |
26 | Privacy Policy Inspection | Security through Obscurity |
27 | Password Strength | Broken Authentication |
# | Flag | Box |
---|---|---|
1 | Score Board | Miscellaneous |
2 | Login Admin | Injection |
3 | Error Handling | Security Misconfiguration |
4 | Confidential Document | Sensitive Data Exposure |
5 | DOM XSS | XSS |
6 | Privacy Policy | Miscellaneous |
7 | Exposed Metrics | Sensitive Data Exposure |
8 | CAPTCHA Bypass | Broken Anti Automation |
9 | Password Strength | Broken Authentication |
10 | Admin Section | Broken Access Control |
11 | Login Bender | Injection |
12 | Empty User Registration | Improper Input Validation |
13 | Admin Registration | Improper Input Validation |
14 | View Basket | Broken Access Control |
15 | Login Bjoern | Broken Authentication |
16 | Web3 Sandbox | Broken Access Control |
17 | Login Amy | Sensitive Data Exposure |
18 | Login MC SafeSearch | Sensitive Data Exposure |
19 | Login Support Team | Security Misconfiguration |
20 | Poison Null Byte | Improper Input Validation |
21 | Easter Egg | Broken Access Control |
# | Flag | Box |
---|---|---|
1 | Score Board | Miscellaneous |
2 | Privacy Policy | Miscellaneous |
3 | Bully Chatbot | Miscellaneous |
4 | Mass Dispel | Miscellaneous |
5 | Exposed Metrics | Sensitive Data Exposure |
6 | DOM XSS | XSS |
7 | Bonus Payload | XSS |
8 | Error Handling | Security Misconfiguration |
9 | Security Policy | Miscellaneous |
10 | Confidential Document | Sensitive Data Exposure |
11 | Web3 Sandbox | Broken Access Control |
12 | Password Strength | Broken Authentication |
13 | Login Admin | Injection |
14 | Admin Section | Broken Access Control |
15 | Blockchain Hype | Security through Obscurity |
16 | Meta Geo Stalking | Sensitive Data Exposure |
17 | Visual Geo Stalking | Sensitive Data Exposure |
18 | User Credentials | Injection |
19 | Database Schema | Injection |
20 | Login Jim | Injection |
21 | Forged Feedback | Broken Access Control |
22 | Five-Star Feedback | Broken Access Control |
23 | Zero Stars | Improper Input Validation |
24 | Empty User Registration | Improper Input Validation |
25 | Repetitive Registration | Improper Input Validation |
26 | Admin Registration | Improper Input Validation |
# | Flag | Box |
---|---|---|
1 | DOM XSS | XSS |
2 | Score Board | Miscellaneous |
3 | Error Handling | Security Misconfiguration |
4 | Privacy Policy | Miscellaneous |
5 | Bully Chatbot | Miscellaneous |
6 | Bonus Payload | XSS |
7 | Login Admin | Injection |
8 | Confidential Document | Sensitive Data Exposure |
9 | Password Strength | Broken Authentication |
10 | View Basket | Broken Access Control |
11 | Empty User Registration | Improper Input Validation |
12 | Payback Time | Improper Input Validation |
13 | Visual Geo Stalking | Sensitive Data Exposure |
14 | Meta Geo Stalking | Sensitive Data Exposure |
15 | Admin Section | Broken Access Control |
16 | Security Policy | Miscellaneous |
# | Flag | Box |
---|---|---|
1 | Score Board | Miscellaneous |
2 | Privacy Policy | Miscellaneous |
3 | Confidential Document | Sensitive Data Exposure |
4 | Error Handling | Security Misconfiguration |
5 | Bully Chatbot | Miscellaneous |
6 | View Basket | Broken Access Control |
7 | Forged Review | Broken Access Control |
8 | Exposed Metrics | Sensitive Data Exposure |
9 | Forged Feedback | Broken Access Control |
# | Flag | Box |
---|---|---|
1 | Score Board | Miscellaneous |
2 | DOM XSS | XSS |
3 | Bonus Payload | XSS |
4 | Zero Stars | Improper Input Validation |