BOOK THIS SPACE FOR AD
ARTICLE ADRead For Free- https://nexguardians.com/p4-bugs-and-their-poc-steps-part-7/
This is part 7 of P4 bug’s if you haven’t check previous part then check it out. Part 1 , Part 2, Part 3, Part 4, Part 5, Part 6
Hi everyone, I am socalledhacker, i am a security researcher , penetration tester, certified ethical hacker and a web3 noob. In past months, I have discover lot’s of bugs but in today’s article we are going to discuss about low hanging fruits or P4 vuln’s as they are very easy to find and also present in almost every website. So let’s start with our first vulnerability.
This bug is also consider as P4 bug. This bug is simple as you can understand this by it’s name. Like lot’s of website have comment section and they have a specific feature of report other user comment if you found that sensitive.
In order to exploit this feature let’s say there is no rate limit on that and the comment got deleted after a specific number of reports to that comments, now you can capture the report comment request to Burpsuite and send it to intruder and start attack and after a number of request you will se that the comment got deleted.