Admin Bypass Lab 1 - Referer-based Access Control


Access Denied

You must navigate from the admin portal to access this page.

Current Referer: (none)

Hint (click to reveal)

The server checks the Referer header. It must contain admin-portal.
Use Burp Suite or curl to add: Referer: http://admin-portal.internal/login


Back to Admin Bypass Labs