πŸ›‘οΈ Security Lab Track A Β· Web Application Security Β· Stage 6

Track A Β· Stage 6

Web Application Security

IDOR β€” Insecure Direct Object Reference easynot started

After logging in as a normal user you can view 'your' invoice at /invoice?id=<n>. The id is not checked against your account. Access another user's invoice to read the flag.

loading simulator…

Vertical Privilege Escalation mediumnot started

A low-privilege user can reach an admin-only function because the role is taken from a tamperable request field. Escalate to admin and read the flag.

loading simulator…