It's like creating an attack called "GOLDEN ADMIN". If you have admin credentials, you can log in as the admin and do anything you want! Wow!
(I know that letting attackers authenticate to anywhere without generating logs is bad, but still... i agree with the parent reply)
It's like creating an attack called "GOLDEN ADMIN". If you have admin credentials, you can log in as the admin and do anything you want! Wow!
(I know that letting attackers authenticate to anywhere without generating logs is bad, but still... i agree with the parent reply)