Back to directory
WRITEUP #4117

Exploiting Application-Level Profile Semantics (APLS)

APIAPLS misconfigurationAPI misconfiguration
by@niemand_sec(Niemand)
Program
-
Published
Jan 8, 2021
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://niemand.com.ar/2021/01/08/exploiting-application-level-profile-semantics-apls-from-spring-data-rest/
RELATED WRITEUPS
Authorization bypass due to cache misconfiguration
APIAuthorization bypass
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL

Built with ❤️ by Shubham Rawat