Forum Discussion
immervivesolver
Bronze II
14 days agoTrick or Treat: Manor of Madness
Any hints or close payloads for last task
This should nudge you in the right direction - MongoDB $where operator JavaScript injection - Web Application Vulnerabilities | Invicti
4 Replies
- Samh051
Bronze II
Sure, the query i used is
$where":"this.name == '' && this.incantation == '';1==1"The aim was to discover you could use JavaScript injection to evaluate the query to true.
- immervivesolver
Bronze II
Samh051 I tried this query but didn’t worked. I managed to build a query using the resource you shared. Thanks for suggestion.
- Samh051
Bronze II
This should nudge you in the right direction - MongoDB $where operator JavaScript injection - Web Application Vulnerabilities | Invicti
- immervivesolver
Bronze II
i tried, but didn’t worked. Would you mind pasting the payload