Vulnlabs
A simple vulnerable webapp created by PHP
Install / Use
/learn @daffainfo/VulnlabsREADME
VulnLabs
Description
A simple vulnerable lab that created using PHP and MySQL
List of Vulnerabilities
- Broken Authentication
- Command Injection
- Cross Site Request Forgery
- Cross-Site Scripting
- File Inclusion
- Insecure Direct Object References
- Misconfiguration
- SQL Injection
- Unrestricted File Upload
How to Install
$ git clone https://github.com/daffainfo/vulnlabs/
$ mv vulnlabs /var/www/html
$ mysql -e "CREATE DATABASE vulnlab;CREATE USER 'vulnlab'@'*' IDENTIFIED BY 'vulnlab';GRANT ALL ON vulnlab.* TO 'vulnlab'@'*';flush privileges;"
$ mysql -u vulnlab -p vulnlabs < vulnlabs.sql
$ chmod -R 777 /var/www/html/vulnlabs
$ chown -R www-data:www-data /var/www/html/vulnlabs
To-Do
[] Add Dockerfile [] Beautify the website
