Unprotected admin functionality with unpredictable URL

Unprotected admin functionality with unpredictable URL

Unprotected admin functionality with unpredictable URL

1: Access the Lab: Unprotected admin functionality with unpredictable URL.

Website: https://portswigger.net/web-security/access-control/lab-unprotected-admin-functionality-with-unpredictable-url

Unprotected admin functionality with unpredictable URL 1

2: Open the View page source.

Shortcut key: Ctrl + U

Unprotected admin functionality with unpredictable URL 2

3: Search for the admin in the View page source code.

Shortcut key: Ctrl + F

Unprotected admin functionality with unpredictable URL 3

4: Go to the My account.

5: Access the Admin Panel.

Unprotected admin functionality with unpredictable URL 4

6: Delete the carlos user.

Unprotected admin functionality with unpredictable URL 5

7: The LAB has been solved.

Unprotected admin functionality with unpredictable URL 6

PortSwigger Labs

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top