The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Basic password reset poisoning querry

Nowicjusz | Last updated: Aug 26, 2021 01:14PM UTC

i am wondering if the lab description is misleading : "The user carlos will carelessly click on any links in emails that he receives." Do we, theoretically, need any interaction from the affected user? Because the forged request generates the token for the password reset and the server response containing it is sent to attacker controlled 'exploit server' and logged. it seems for me that we dont need carlos here. Next, we simply edit url with the generated token and use it to reset carlos password. There was no follow up email to confirm if this was intended action to reset the password as well. Cheers

Michelle, PortSwigger Agent | Last updated: Aug 27, 2021 12:59PM UTC