Your question is OWASP Top 10 Exploitation. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
Describe OWASP Top 10 and explain how you would exploit one of them in a controlled, authorized test.