A simple app constructed using golang, vulnerable to LDAP Injection
235
LDAP Injection is an attack used to exploit web based applications that construct LDAP statements based on user input. When an application fails to properly sanitize user input, it’s possible to modify LDAP statements using a local proxy. This could result in the execution of arbitrary commands such as granting permissions to unauthorized queries, and content modification inside the LDAP tree.
Well the app can be accessed directly by running this command docker run -it -p 9090:9090 dockerbucket/vuln_ldap bash ./vuLnDAP.sh
Content type
Image
Digest
Size
369.1 MB
Last updated
over 4 years ago
docker pull dockerbucket/vuln_ldap