Burp Suite User Forum

Create new post

Exploiting server-side parameter pollution in a query string

mhg | Last updated: Jul 23, 2024 10:18AM UTC

In the lab process you reach a point which it tells you invalid filed --> now i though field --> means you must find the field's name --> but the name was field --> and i Spent alot of time trying to find it by brute forcing --> it would be better to change That variable name --> to s.th more accurate --> or change the error response which is too misleading

Ben, PortSwigger Agent | Last updated: Jul 24, 2024 06:54AM UTC

Hi, Just to clarify, are you referring to the steps detailed in points 7,8, 9 and 10 of the solution?

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.