# Access control vulnerabilities Lab7 本題是「User ID controlled by request parameter」的變體,敏感資訊在重定向(redirect)的響應體(body)裡被洩露了。 所以進入網站後登入帳號。  題目說重新導向會出現訊息,所以把請求放到 Repeater 重新請求。   API key 直接被放在這裡,所以拿去送出答案完成本題。  ---
×
Sign in
Email
Password
Forgot password
or
By clicking below, you agree to our
terms of service
.
Sign in via Facebook
Sign in via Twitter
Sign in via GitHub
Sign in via Dropbox
Sign in with Wallet
Wallet (
)
Connect another wallet
New to HackMD?
Sign up