๐Ÿงช Lab Write-Up

โ„น๏ธ Info

This lab contains an unprotected admin panel.

๐ŸŽฏ Goal

Solve the lab by deleting the user carlos.


๐Ÿ” Enumeration

I suspected there was an exposed admin functionality, so I tested multiple common login credentials:

I also attempted to brute-force potential admin panel paths:


๐Ÿšช Accessing the Panel

I successfully discovered the unprotected admin panel at:

<http://Domain-lab/administrator-panel>