• Resolved ale8521

    (@ale8521)


    When intercepting the traffic when requesting the modification of the only allowed parameter (email), it could be observed that other parameters such as name, surname and username traveled along with it, when modifying them it was evidenced that these were updated, this can also be done by modifying value of the hidden fields of the form associated with these mentioned parameters

    SOLUTION

    Perform validations and restrictions that are performed on the client side (browser) also on the server side

Viewing 1 replies (of 1 total)
Viewing 1 replies (of 1 total)
  • The topic ‘[NSFW] Modification of parameters’ is closed to new replies.