πŸ“–
NOTES
search
⌘Ctrlk
πŸ“–
NOTES
  • Welcome!
  • Reference
    • Hacking
      • Penetration Testing Resources Bookmarks
      • Web/App Pentesting
      • Port Swigger
        • Access control
          • Lab: Unprotected admin functionality
          • Unprotected admin functionality with unpredictable URL
          • User role controlled by request parameter
          • User ID controlled by request parameter, with unpredictable user IDs
          • User ID controlled by request parameter with password disclosure
        • Authentication
        • Server-side request forgery (SSRF)
        • File Upload Vulnerabilities
        • SQL Injection
      • Burp
      • ☁️Cloud
      • Networking
      • Hardware Hacking
    • HTML/CSS/JAVA
    • DataBase
    • PYTHON3
    • SEO
    • Cloud
    • Files
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Referencechevron-right
  2. Hackingchevron-right
  3. Port Swigger

Access control

Lab: Unprotected admin functionalitychevron-rightUnprotected admin functionality with unpredictable URLchevron-rightUser role controlled by request parameterchevron-rightUser ID controlled by request parameter, with unpredictable user IDschevron-rightUser ID controlled by request parameter with password disclosurechevron-right
PreviousPort Swiggerchevron-leftNextLab: Unprotected admin functionalitychevron-right

Last updated 2 years ago