First. Create a evil, oh no, a eval controller.
app/controllers/ruby_eval_controller.rb
1 | Class RubyEvalController < ApplicationController |
Then. Let’s post some evil params.
POST /ruby_eval
1 | <?xml version="1.0" encoding="UTF-8" ?> |
First. Create a evil, oh no, a eval controller.
app/controllers/ruby_eval_controller.rb
1 | Class RubyEvalController < ApplicationController |
Then. Let’s post some evil params.
POST /ruby_eval
1 | <?xml version="1.0" encoding="UTF-8" ?> |