XVWA
  • Login



  • About
Setup Home Instructions Setup / Reset
Attacks SQL Injection SQL Injection (Blind) OS Command Injection XPATH Injection Formula Injection PHP Object Injection Unrestricted File Upload XSS - Reflected XSS - Stored XSS - DOM Based SSRF / XSPA File Inclusion Session Flaws Insecure Direct Object Reference Missing Functional Access Control CSRF Cryptography Redirects & Forwards Server Side Template Injection

Xtreme Vulnerable Web Application (XVWA) - Setup


XVWA is licensed under a GNU GENERAL PUBLIC LICENSE Version 3