Hacking My College panel using University Website Like a Pro

1 month ago 27
BOOK THIS SPACE FOR AD
ARTICLE AD

Raunak Gupta Aka Biscuit

InfoSec Write-ups

Free Article link: Hereeee!!!
Today, I’m excited to share the story of how I successfully gained access to my college panel through a vulnerability in the university’s system.

All The Sensitive Data is blurred Due To Privacy Reason

University Website

A few months ago, I was casually browsing my university’s website to check my second-year computer science results and I notice there two interesting panel first is University Panel & second is College Panel on my university website, After I saw it I was like why its here widely open because generally such panels are hidden.
I quickly checked University Panel on website I found nothing interesting there, After that I check college Panel and found password reset page

Then I thought why not testing this functionality 😬

There was two input fields College Login ID & Password I tried some random words like admin, user, teacher and student which didn’t work for me then I directly jump to Forgot Password page.

Read Entire Article