Forum Discussion
immervivesolver
Bronze III
2 months agoTrick or Treat: Manor of Madness
Any hints or close payloads for last task
- 2 months ago
This should nudge you in the right direction - MongoDB $where operator JavaScript injection - Web Application Vulnerabilities | Invicti
Samh051
Bronze III
2 months agoSure, the query i used is
$where":"this.name == '' && this.incantation == '';1==1"The aim was to discover you could use JavaScript injection to evaluate the query to true.
immervivesolver
Bronze III
2 months agoSamh051 I tried this query but didn’t worked. I managed to build a query using the resource you shared. Thanks for suggestion.
- PRABAKARANRAMAMURTHY20 days ago
Bronze III
Hi immervivesolver, can I understand more on the query you build to solve the last question?
Does it use "sleep(5000)"? Can you drop some hints please?