
Lab 02: Exploiting NoSQL operator injection to bypass authentication
1. Executive Summary Vulnerability: NoSQL Operator Injection. Description: The login mechanism accepts JSON input and passes it directly to a MongoDB query without sanitization. In MongoDB, query...







