📖
NOTES
Ctrlk
  • Welcome!
  • Reference
    • Hacking
      • Penetration Testing Resources Bookmarks
      • Web/App Pentesting
      • Port Swigger
        • Access control
          • Lab: Unprotected admin functionality
          • Unprotected admin functionality with unpredictable URL
          • User role controlled by request parameter
          • User ID controlled by request parameter, with unpredictable user IDs
          • User ID controlled by request parameter with password disclosure
        • Authentication
        • Server-side request forgery (SSRF)
        • File Upload Vulnerabilities
        • SQL Injection
      • Burp
      • ☁️Cloud
      • Networking
      • Hardware Hacking
    • HTML/CSS/JAVA
    • DataBase
    • PYTHON3
    • SEO
    • Cloud
    • Files
Powered by GitBook
On this page
  1. Reference
  2. Hacking
  3. Port Swigger

Access control

Lab: Unprotected admin functionalityUnprotected admin functionality with unpredictable URLUser role controlled by request parameterUser ID controlled by request parameter, with unpredictable user IDsUser ID controlled by request parameter with password disclosure
PreviousPort SwiggerNextLab: Unprotected admin functionality

Last updated 1 year ago