As you can see our current URL is http://192.168.140.138/bWAPP/htmli_current_url.php
Now capture the request in burp
In the host itโs showing the IP of the VM
(But using the HTML injection vulnerability we can change the URL which is specified in the web page and trick our victim.)
Twitter / Hack The Box / CTF Team / Teck_N00bs Community Telegram
Comments