Back to directory
WRITEUP #6311

Hacking the NHS for Fun and No Profit

SQL InjectionLFI
by@NathOnSecurity(Nathan)
Program
NHS
Published
May 22, 2017
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@nmalcolm/hacking-the-nhs-for-fun-and-no-profit-90931029dcb4
RELATED WRITEUPS
Directory Traversal, SQL Injection and Server-Side Request Forgery
SQL InjectionPath traversal
IIS welcome page to source code review to LFI!
SSRFLFI
The Hunt for XXE to LFI: How I Uncovered CVE-2019–9670 in a Bug Bounty Program
XXELFI
Breaking Down Barriers: Exploiting Pre-Auth SQL Injection In WhatsUp Gold - CVE-2024-6670
SQL InjectionReverse engineering
Bypassing airport security via SQL injection
SQL Injection

Built with ❤️ by Shubham Rawat