This lab uses a serialization-based session mechanism and is vulnerable to privilege escalation as a result. To solve the lab, edit the serialized object in the session cookie to exploit this vulnerability and gain administrative privileges. Then, delete Carlos's account.
Hope you guys enjoyed the episode. For any questions feel free to ask them in comment section or on our social network.
------------------------------------------------------------------------------------------------------------
Social Networks:
Facebook- https://www.facebook.com/hackerassoci...
LinkedIn- https://www.linkedin.com/company/hack......
Twitter- https://twitter.com/hackerasociate
------------------------------------------------------------------------------------------------------------
Thank you for watching. Stay connected.
#PortSwigger #hacking #cybersecurity