Burp Suite User Forum

Create new post

BSCP exam

Javi | Last updated: Apr 13, 2024 04:48PM UTC

Hi, I have already attempted the BSCP certification. I was able to solve the first app correctly, but in the second app there was a vulnerability that I knew it was there (essentially because of the active scan and because of payloads that where successfully executed), but when I send the request and wait for the exploit server to respond, there is no response related with the request. I am pretty sure it was not a "payload problem" and it was not that difficult, as it was related with the Host Header (if you know what i mean). I would like the get some feedback about this in order to learn for the next attempt.

Ben, PortSwigger Agent | Last updated: Apr 15, 2024 07:27AM UTC

Hi Javi, In the interests of fairness, we are extremely limited as to what we can say with regards to the vulnerabilities present within a specific users exam. It is possible for us to confirm that your second exam application did not contain a host header vulnerability.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.