webverse 5
- Command Injection via Filename Parameter Leading to Remote Code Execution | Quotin
- IDOR in Order Access – Unauthorized Order Data Exposure | Hartwood
- IDOR – Unauthorized Access to Borrower Records | Overdue
- Local File Inclusion – Arbitrary File Read Leading to Flag Disclosure | Corridor
- SQL Injection – Full Database Extraction via Search Function | Flower