A bit of homework help

Post » Wed Sep 12, 2012 1:37 pm

So I have been assigned the task of getting into this website. The task is to bypass a webserver login block, which gives me the error of "You are not authorized to view this page". The previous assignments have involved looking at the page source code and finding vulnerabilities to exploit, so I am assuming I have to do the same for this one. The professor said it involved cookies.

This is all I really have to go on. He just told us to get into the website by any means.

http://i.imgur.com/tS2vp.jpg. Any help would be appreciated.
User avatar
Danny Blight
 
Posts: 3400
Joined: Wed Jun 27, 2007 11:30 am

Post » Wed Sep 12, 2012 8:36 am

Well it's quite clear

Your professor wants some cookies and he'll authorize you to view the webpage if you make him some

:cookie:
User avatar
Matt Bee
 
Posts: 3441
Joined: Tue Jul 10, 2007 5:32 am

Post » Wed Sep 12, 2012 1:43 am

Well it's quite clear

Your professor wants some cookies and he'll authorize you to view the webpage if you make him some

:cookie:

I lol'd. :laugh:
User avatar
Taylor Tifany
 
Posts: 3555
Joined: Sun Jun 25, 2006 7:22 am

Post » Wed Sep 12, 2012 7:46 am

I'll give you a hint.

The answer has to do with the way websites authenticate users


EDIT: well, not really, but it's hard to help without giving you the answer :P
User avatar
Kill Bill
 
Posts: 3355
Joined: Wed Aug 30, 2006 2:22 am

Post » Wed Sep 12, 2012 10:53 am

I'll give you a hint.

The answer has to do with the way websites authenticate users


EDIT: well, not really, but it's hard to help without giving you the answer :tongue:

Squirrel Injections?
User avatar
Esther Fernandez
 
Posts: 3415
Joined: Wed Sep 27, 2006 11:52 am

Post » Wed Sep 12, 2012 1:15 am



Squirrel Injections?

Captcha?
User avatar
Tiff Clark
 
Posts: 3297
Joined: Wed Aug 09, 2006 2:23 am

Post » Wed Sep 12, 2012 7:09 am

No (I wish :P) and no

and to prove I'm not just messing with you http://i.imgur.com/ZVek1.jpg
User avatar
Jeff Tingler
 
Posts: 3609
Joined: Sat Oct 13, 2007 7:55 pm

Post » Wed Sep 12, 2012 5:51 am

I got it. Thanks for your help guys.
User avatar
Cedric Pearson
 
Posts: 3487
Joined: Fri Sep 28, 2007 9:39 pm

Post » Wed Sep 12, 2012 12:26 am

:goodjob:
User avatar
Lil Miss
 
Posts: 3373
Joined: Thu Nov 23, 2006 12:57 pm

Post » Wed Sep 12, 2012 6:02 am

So what was the solution?
User avatar
phil walsh
 
Posts: 3317
Joined: Wed May 16, 2007 8:46 pm

Post » Wed Sep 12, 2012 1:34 am

http://i.imgur.com/bhpPw.jpg
User avatar
ladyflames
 
Posts: 3355
Joined: Sat Nov 25, 2006 9:45 am

Post » Wed Sep 12, 2012 11:47 am

Simpler than I thought. All I had to do was to change the value of the "auth" cookie on the site from "False" to "True". I used the firefox addon "Firebug" to do it.
User avatar
JUan Martinez
 
Posts: 3552
Joined: Tue Oct 16, 2007 7:12 am


Return to Othor Games