← 문제 라이브러리
Security Advanced SECURITY-1259 · 19 min

An allowlist protects the main admin hostname but a second hostname still reaches the same backend through another proxy chain

The edge policy works on the documented URL, yet another hostname bypasses it because the backend is still exposed through a different path.

WAF / AppSecPro
시나리오

An admin surface appears locked down until a legacy or internal …

구독하면 이어서 볼 수 있어요

이 문제의 전체 시나리오와 점검 체크리스트, 복구 순서, 모범 풀이는 Pro 구독에서 열립니다.

구독 안내 보기