Blind XPath injection
Another login you have to bypass. Maybe you can find an injection that works?
I've turned this into a Medium article! Read the solution here:
Blind XPath Injections: The Path Less Travelledarrow-up-right
https://owasp.org/www-community/attacks/XPATH_Injectionarrow-up-right
https://book.hacktricks.xyz/pentesting-web/xpath-injectionarrow-up-right
Last updated 3 years ago