Skip to content

4ASystem #13

@JoeFeng

Description

@JoeFeng

4ASystem
横向越权
模拟登陆web1应用,获得访问API的凭证
请问这个具体怎么操作?访问xxx:58080是404,在web1登录或者修改密码抓不到POST /api/v1/sys_authenticate这个包

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions