AllAboutBugBounty/Bypass/Bypass 304.md
2022-06-15 17:38:42 +07:00

666 B

Bypass 304 (Not Modified)

  1. Delete "If-None-Match" header
GET /admin HTTP/1.1
Host: target.com
If-None-Match: W/"32-IuK7rSIJ92ka0c92kld"

Try this to bypass

GET /admin HTTP/1.1
Host: target.com
  1. Adding random character in the end of "If-None-Match" header
GET /admin HTTP/1.1
Host: target.com
If-None-Match: W/"32-IuK7rSIJ92ka0c92kld"

Try this to bypass

GET /admin HTTP/1.1
Host: target.com
Host: target.com
If-None-Match: W/"32-IuK7rSIJ92ka0c92kld" b

References