Web - Server

lundi 5 mars 2018, 10:20  #1
Web - Server - HTTP - Open redirect

Hi,

I got stuck with this challenge.
Managed to find the open redirect vuln, and I’m able to exploit it, but no idea what the chall password should be ?!

vendredi 9 mars 2018, 06:15  #2
Web - Server - HTTP - Open redirect
0verdose
  • 9 posts

So you are able to redirect to another site and you have the hash ? Pass will spit out before redirect so use something to pause the browser for capture

mardi 24 juillet 2018, 08:01  #3
Web - Server - HTTP - Open redirect
fatinsourav
  • 1 posts

How to check for hashes ?

lundi 7 janvier 2019, 14:58  #4
Web - Server - HTTP - Open redirect
wh1z
  • 2 posts

Hi,

I have managed to get the redirect work to a different domain and I can see the password in a split second before the redirect happens. Can someone point me into the right direction how to stop before the redirect takes place ? I have tried different things but without success.

Thank you very much in advance.

lundi 7 janvier 2019, 17:48  #5
Web - Server - HTTP - Open redirect
wh1z
  • 2 posts

Nevermind...got it.

vendredi 29 novembre 2019, 11:04  #6
Web - Server - HTTP - Open redirect
pitno88
  • 1 posts

yo guys anyone can help me to solve this level ? I ain’t understand how to do it. What will i need to do ?

mercredi 8 juin 2022, 21:15  #7
Web - Server - HTTP - Open redirect
xxroot
  • 1 posts

I think burp suite can help u , intercept the http request and all things will be done