$ cat writeup.md…
$ cat writeup.md…
root-me
Task: an intranet app skips authentication for LAN (private-IP) clients but derives the client IP from spoofable HTTP forwarding headers. Solution: send X-Forwarded-For (or Client-IP) with a private IP (192.168.0.1) via curl to be treated as internal and reveal the validation password.
Permission denied (requires tier.pro)
Sign in with GitHub, Discord, or Google to continue. No email required.
$sign in$ grep --similar