Practice exploiting some common web vulnerabilities at easy - medium level, using Xampp and bWAPP
Vulnerabilities include:
XSS Reflected (GET)
XSS Reflected (JSON)
XSS Reflected (Href)
XSS Stored (Blog)
CSRF (Change Password)
SQL Injection (Login Form/Hero)
SQL Injection (Get/Search)
SQL Injection-Blind-Boolean-Based
SQL Injection-Blind-Time-Based
Prerequisites: Installed xampp and bwapp