OS command injection (also known as shell injection) is a web security vulnerability that allows an attacker to execute arbitrary operating system (OS) commands on the server that is running an application, and typically fully compromise the application and all its data. Learn more from the Web Security Academy, by PortSwigger.
Read the full guide: https://portswigger.net/web-security/...
Register for free with the Web Security Academy to test yourself in our interactive labs: https://portswigger.net/web-security