lab 3 Access Controls 2

 I opened the page and took a look at it. I again tried find the admin page again but now with another method.


After looking at the HTML code i found that they had some javascript in there and they had the /admin-0p1j64


I put that in the URL and then i was able to get to the admin page and delete Carlos

Comments

Popular posts from this blog

Practitioner Lab 1: File path traversal, traversal sequences blocked with absolute path bypass

Practitioner Lab 7: SSRF with filter bypass via open redirection vulnerability

Practitioner Lab 4: File path traversal, validation of start of path

Practitioner Lab 5:File path traversal, validation of file extension with null byte bypass