OS command injection

Continuing the discussion from Try all other injection operators to see if any of them is not blacklisted. Which of (new-line, &, |) is not blacklisted by the web application:

for me `` &, &&, \n(encoded), $() but the answer was something unexpected that is New-Line

1 Like