设备发现了一个奇怪的请求

POST /kfc/crazy-thursday/voucher HTTP/1.1
Host: api.kfc.com
User-Agent: Security-Scanner/1.0.0
Accept: application/json
Content-Type: application/x-www-form-urlencoded
Authorization: Bearer pentest-token-7a3f9c
Content-Length: 68

operation=redeem&code=V50-FRIED-CHICKEN&target=original-recipe&quantity=2
HTTP/1.1 200 OK
Server: KFC-Gateway/2.3.1
Content-Type: application/json
X-Security-Scan: Passed
Content-Length: 135

{
“status”: “success”,
“message”: “Voucher redeemed. Order details: 2x Original Recipe Chicken. Total: 50USD”,
“order_id”: “SEC-2023-0413-6789”,
“expires_in”: 1800
}

请登录后发表评论

    请登录后查看回复内容