Forum Discussion
Jinja2 Pen test
would really appreciate some help.. for now i have moved onto another lab.. just have this pending here..
This is a CTF, our Support Team can't help with it. I'll see if someone who's completed the lab can kindly help you...
- autom8on16 days ago
Ambassador
Does this help as a starter?
I've not done this lab since 2021 - but my notes are expansive. I'm tied up for a few days - but will try and have a look and see if anything has changed much...
- webbug200515 days agoBronze II
nope.. this is the problem. anything i try.. cannot beat the 50 character limit.. using req.args just prints my args instead of evaluating it.
- autom8on6 days ago
Ambassador
I'm not sure which question you're actually stuck on, or how far you've got. But, scanning through my notes - I find something about req.args just rendering stuff as a string. The notes that immediately follow that are "enumerating options under config - since the task says we need to persist things between requests", and the next screenshot I'm trying :
Hoping that's of some use to you? If you're stuck beyond this point, let me know...