<aside> πŸ“Ž Content

Access Log


Sensitive Data Exposure Gain access to any access log file of the server.

???

Allowlist Bypass


Unvalidated Redirects Enforce a redirect to a page you are not supposed to redirect to.

Outdated Allowlist λ¬Έμ œμ—μ„œ donation λ²„νŠΌμ΄ λ‹€λ₯Έ μ‚¬μ΄νŠΈλ‘œ redirectν•˜λŠ” κΈ°λŠ₯을 κ°–κ³  μžˆμ—ˆκ³  direct ν—ˆμš©λœ url은 main.js μ—μ„œ μ°Ύμ•„λ³Ό 수 μžˆμ—ˆλ‹€.

Untitled

/redirect?to= 의 경둜둜 redirectν•  url을 ν¬ν•¨ν•˜μ—¬ μš”μ²­ν•˜λŠ”λ°, ν—ˆμš©λœ url은 3κ°œμž„μ„ 확인할 수 μžˆλ‹€.

Untitled

λ”°λΌμ„œ ν—ˆμš©λ˜μ§€ μ•Šμ€ urlλ‘œλŠ” redirect ν•  수 μ—†μŒμ„ μ•Œ 수 μžˆλ‹€. 이λ₯Ό μ΄μš©ν•˜μ—¬ ν—ˆμš©λœ url을 to 의 인자둜 μΈμ‹ν•˜κ²Œλ” μš”μ²­μ„ 보낼 수 μžˆλ‹€.

/redirect?to=https://google.com?to=https://blockchain.info/address/1AbKfgvw9psQ41NbLi8kufDQTezwG8DRZm

Untitled

μ •μƒμ μœΌλ‘œ redirect 된 것을 확인할 수 μžˆλ‹€.

CSP Bypass