webProeasy
Lab 217 — PlanForge — Broken Authorization in Subscription Upgrade
hackadvisor
Task: SaaS platform with subscription tiers (Free/Pro/Enterprise), billing API exposes plan data. Solution: Queried /api/plans endpoint directly, discovered hidden internal plan with is_public:0 containing the flag in description field.
$ ls tags/ techniques/
api_enumerationjavascript_source_analysishidden_resource_discoveryis_public_filter_bypass
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][Pro]Lab 300 — PlanForge — Broken Authentication via Hidden Trial Activation— hackadvisor
- [web][Pro]Lab 116 — InsightForge — IDOR via Undocumented Internal API— hackadvisor
- [web][Pro]Lab 294 — TeamForge — GraphQL Self-Escalation via UpdateMembership— hackadvisor
- [web][Pro]Lab 291 — HireFlow — Broken Authorization in Premium Feature Endpoints— hackadvisor
- [web][Pro]BillForge— hackadvisor