Jinja2

Basic server side template injection (SSTI) - Python Jinja2

drag_indicator
info
drag_indicator
inputs
drag_indicator
inspect

Basic server side template injection (SSTI) - Python Jinja2

Use the knowledge from the training module jinja2 to read the flag located in the system enviroment.

Hints

Solution

drag_indicator
waf
INPUT
OUTPUT
drag_indicator
code
drag_indicator
result