Not have privileges in prod database, so i have to create a simple 'hidden API func' in the backend of apps that i develop, so it can receive raw query and give response for the results, the REST API is (/getReport). Still Works :/

  • 0
    That's just.. evil... May your sysadmin never find out about it
  • 0
    So basically you leave a backdoor in production 😛
Add Comment