Web Application
Turning Frontend Clues into Backend Compromise: Insecure Routing to RCE
In this edition of Exploits Explained, SRT member Marouane "Duty1g" Belabbassi recounts how an unsafe eval() call in the process endpoint allowed dynamic backend routing based entirely on user input.


