The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Lab: Web cache poisoning via ambiguous requests

Nordy | Last updated: May 17, 2023 03:11PM UTC

All extensions in the BS are disabled and removed When running the Lab. GET /?cb=1234 HTTP/1.1 #(or GET / HTTP/1.1 (or GET/ HTTP/2)) Host: 0a3a00b404393006819e98fe00460096.web-security-academy.net Host: exploit-0aca000f040f309581f4970d014d00cd.exploit-server.net Cookie: session=IFSGVxw3eL6Dvz9lpgELIY7VUo8grQkn; _lab=46%7cMCwCFHhjONqFQBe%2bPFoQfYSvAVzgV9t1AhQMtkPd%2bm5ej7ndysu65%2bMVuX%2bdgdCXlsC9KOS6svT6xlou7ewdwPv2Y0HChhBRzktBeU%2fWXc92jnBCTmRrevhu%2fmdsuYfKKhaBqZpFPBD4BLBA8WD17xcNS1RzTMxexBmhQg6ADh59Qxc%3d User-Agent: Mozilla/5.0 (Windows NT 10.0; rv:102.0) Gecko/20100101 Firefox/102.0 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8 Accept-Language: en-US,en;q=0.5 Accept-Encoding: gzip, deflate Referer: https://portswigger.net/ Dnt: 1 Upgrade-Insecure-Requests: 1 Sec-Fetch-Dest: document Sec-Fetch-Mode: navigate Sec-Fetch-Site: cross-site Sec-Fetch-User: ?1 Sec-Gpc: 1 Te: trailers Any attempt to write a second host gives out HTTP/2 504 Gateway Timeout Content-Type: text/html; charset=utf-8 Content-Length: 199 <html><head><title>Server Error: Gateway Timeout</title></head><body><h1>Server Error: Gateway Timeout (1) connecting to exploit-0aca000f040f309581f4970d014d00cd.exploit-server.net</h1></body></html> Thank you in advance for your help!

Ben, PortSwigger Agent | Last updated: May 18, 2023 08:17AM UTC

Hi, If you change your Repeater request to use HTTP/1 via the Protocol setting under the Request attributes section in Inspector, does this then allow you to send your requests successfully and receive the expected responses?

Nordy | Last updated: May 18, 2023 12:58PM UTC

Thanks dear Ben! I will try your recommendation as soon as possible. I will report here. First i need to find these Request Attributes. didn't even know they existed

Nordy | Last updated: May 18, 2023 01:48PM UTC

could not find - give the way pls

Ben, PortSwigger Agent | Last updated: May 19, 2023 07:03AM UTC

Hi, The following screenshot should help with this: https://snipboard.io/aNq01g.jpg

Nordy | Last updated: May 20, 2023 09:04AM UTC

Thank you dear Ben! It worked!

KingOfDice | Last updated: Jun 17, 2023 03:47PM UTC

Hello, I have some problems with this lab: 1)Network Protocol Error An error occurred during a connection to 0abe00600459dac382172f1d000400a5.web-security-academy.net. The page you are trying to view cannot be shown because an error in the network protocol was detected. Please contact the website owners to inform them of this problem. //but if i use Intercept for switch protocol i can visit this site 2)I was able to implement the attack and it works for me, but the lab is not considered complete //I think that the matter is in setting up laboratory protocols, there were no such problems with other laboratories

Dominyque, PortSwigger Agent | Last updated: Jun 19, 2023 07:48AM UTC