webPromedium
Lab 188 — PulseBoard — Host Header Injection in Password Reset
hackadvisor
Task: PulseBoard team analytics platform with password reset functionality. Solution: Host header injection via X-Forwarded-Host leaks password reset token in debug response, enabling admin account takeover.
$ ls tags/ techniques/
privilege_escalationhost_header_injectionpassword_reset_poisoning
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Lab 262 — PulseBoard — JWT Signature Bypass via Google Sign-In— hackadvisor
- [web][Pro]Lab 36 — PulseBoard — Prototype Pollution to RCE via EJS— hackadvisor
- [web][Pro]PulseDesk — Blind SQL Injection in Password Reset Token Extraction— hackadvisor
- [web][Pro]Lab 248 — PulseBoard — Next.js Middleware Authorization Bypass— hackadvisor
- [web][Pro]Lab 389 — PulseBoard — SSTI in Custom Widget Template Builder— hackadvisor