BasicPanda wrote:Easiest one by far even though it left me stumped for a bit. I was looking up directory traversal and reading up on HTML attacks; I was way off. I took a step back and redid mission 8, and re-visited the nature of the script like suggested. Perfection is the key, realize that if you try it, and it doesn't work, it means that the answer isn't 100% correct. Note your current environment or document if necessary.
that's right ! i've found out after i noted the whole directory tree

