How has MechaTech84 got 160 points? #22
Replies: 2 comments 3 replies
-
Good spot. Yeah, there were a couple of labs with bugs that I unpublished. And unpublish doesn't remove the points scored. Perhaps it should... Split Payload XSS was too easy to exploit with just one input, I need to figure out something that can only be exploited using two fields. HTML Filter - SVG Bypass I haven't got a solution for just now, although I think it's possible. It was previously solvable in an unintentional way due to a bug in the lab that ended up being the idea behind "HTML Filter - Attribute Bypass". |
Beta Was this translation helpful? Give feedback.
-
I would prefer to lose the points rather than have a score that is literally unattainable. |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Unless my maths is off then there's only 150 points up for grabs.
(10*1)+(18*5)+(5*10) = 10+90+50 = 150
Are there some "secret" labs?
Beta Was this translation helpful? Give feedback.
All reactions