DEV Community

Discussion on: Hacker101 CTF - Micro-CMS v2

Collapse
 
matthiaskoch profile image
matthias koch • Edited

Hello! Also a newbe, started today and played with your login hack and did this:

  1. Login with your hack.
  2. take the login entry in burp to the repeater
  3. change Line1 to POST .../page/edit/2
  4. got my second Flag without session cookie ;)
Collapse
 
matthiaskoch profile image
matthias koch

and get the third Flag with your SQL Code. The first one for Username and the second for password.
I don't understand how it works, but maybe later..