XSS LABS - vulnerability in search box
Important links XSS CHEATSHEET Reflected XSS Lab: Reflected XSS into HTML context with nothing encoded paste in search box lab solved Stored XSS - vulnerability in comment box Lab: Stored XSS
Search for a command to run...
Important links XSS CHEATSHEET Reflected XSS Lab: Reflected XSS into HTML context with nothing encoded paste in search box lab solved Stored XSS - vulnerability in comment box Lab: Stored XSS
AUTHENTICATION LABS 💡 Broken Access lab's Solution begin's here 1) Unprotected admin functionality - Vertical Privilege Escalation Open the lab In LAB url add /robots.txt at the end and hit ente
“Access Control means have access to system and who or what have access to do changes in system” In field of web applications, access control is depend upon Authentication and session managament Authe
1) Clause allowing retriving hidden data click on any option on weebpage and intercept it in burpsuite and change the paramater value to 'OR 1=1-- and see hidden data 2) SQLI allowing login bypass op