Back to directory
WRITEUP #417

Bypassing a login page and getting full admin access on an internal training platform

Auth BypassAuthentication bypassBroken Access ControlHTTP response manipulationDirectory listing
by@Loupreme_(LS)
Program
-
Published
Feb 28, 2024
Added to HackDex
Aug 26, 2024
Read Full Writeuphttps://medium.com/@l_s_/bypassing-a-login-page-and-getting-full-admin-access-on-an-internal-training-platform-ff5abd88135e
RELATED WRITEUPS
Breaking the Barrier: Admin Panel Takeover Worth $3500
Auth BypassAuthentication bypass
SAML Authentication Bypass Leading to Admin Panel Access
Auth BypassSAML
Breaking Down Barriers: Exploiting Authenticated IPC Clients
Auth BypassIPC client
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
Interesting Story of an Account Takeover Vulnerability
Auth BypassAccount takeover

Built with ❤️ by Shubham Rawat