Which two requests are available for testing vAPI for Mass Assignment (API6)?
GET /vapi/api6/user/me
POST /vapi/api6/user
What is the field that can be used in a mass assignment attack against /vapi/api6?
credit
What is the flag for successfully exploiting vAPI's Mass Assignment vulnerability?
api6_afb969db8b6e272694b4
What HTTP response code is returned after performing a successful mass assignment attack against vAPI?
200
What HTTP response code is returned when sending a PUT request to http://vapi.apisec.ai/vapi/api6/user?
500
Last updated 2 years ago