Sign inSign up

dockerbucket/vuln_ldap

By dockerbucket

•Updated over 4 years ago

A simple app constructed using golang, vulnerable to LDAP Injection

Image
0

235

dockerbucket/vuln_ldap repository overview

⁠What is LDAP Injection??

LDAP Injection is an attack used to exploit web based applications that construct LDAP statements based on user input. When an application fails to properly sanitize user input, it’s possible to modify LDAP statements using a local proxy. This could result in the execution of arbitrary commands such as granting permissions to unauthorized queries, and content modification inside the LDAP tree.

⁠How do i access the vulnerable app??

Well the app can be accessed directly by running this command docker run -it -p 9090:9090 dockerbucket/vuln_ldap bash ./vuLnDAP.sh

⁠Reference

https://digi.ninja/blog/vulndap_walkthrough.php⁠

Tag summary

Content type

Image

Digest

Size

369.1 MB

Last updated

over 4 years ago

docker pull dockerbucket/vuln_ldap