Basic SSRF against the local server

Basic SSRF against the local server

Basic SSRF against the local server

1: Access the Lab.

Website: https://portswigger.net/web-security/ssrf/lab-basic-ssrf-against-localhost

Basic SSRF against the local server 1

2: Open the Burp Suite.

3: Open the product.

Basic SSRF against the local server 2

4: Check the product stock.

Basic SSRF against the local server 3

5: Check the Post request in the Burp Suite and check the stockApi.

Basic SSRF against the local server 4

6: Send the stockApi key to the Repeater.

Shortcut key: Ctrl + R

Basic SSRF against the local server 5

7: Remove the stockApi and Access the localhost admin panel.

Basic SSRF against the local server 6

8: Delete the carlos user.

Basic SSRF against the local server 8

9: Send the request.

Basic SSRF against the local server 9

10: The lab has been completed.

PortSwigger Labs

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top