June 22, 2026
Lab: Flawed enforcement of business rules (Business logic Vulnerabilities)#lab4
Solution:
PRiTi.EX
Author
Solution:
- Access the lab login using given credentials, you notice there coupon code,
NEWCUST5. - Next explore all functionality of this page, if we go to the below of the page we receive another coupon code,
SIGNUP30. - Next if you want try any product but we try leather jacket, add the leather jacket to your cart.
- Go to the checkout and apply both of the coupon codes to get a discount on your order.
- But, if we try next time both codes says already applied, However, if you alternate between the two codes, you can bypass this control.
- Reuse the two codes enough times to reduce your order total to less than your remaining store credit. Complete the order to solve the lab.