==================================================================================================================================== | # Title : WEBY v.1.2.5 CSRF Vulnerability | | # Author : indoushka | | # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 108.0.1(32-bit) | | # Vendor : https://ทําเว็บหาดใหญ่.com | | # Dork : | ==================================================================================================================================== poc : The infected file is the /user.php Inside the folder /admin/user/ Line 46 we note that it used the variable (_GET $). When using method="get" in HTML forms, all names and values within the tag will appear on the browser's URL. Remark : Use this method when sending important data such as a password or other sensitive information. A bookmark can be used to mark the page, which can be useful in some cases. The method you get is suitable when sending large amounts of data. There are two properties that the