Question: The Medium security code uses a PHP str _ replace function to identify and sanitize the ( Close the Reflected XSS Source window first. )
The Medium security code uses a PHP strreplace function to identify
and sanitize the
Close the Reflected XSS Source window first. This time it works.
Because the script tag isn't casesensitive but the strreplace function
is you can bypass it easily.
What does the strreplace function search for?
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
