1- Log in to the application. 2- Navigate to the department editing page, click the "Action" button, and select "Edit". 3- The 'id' parameter will be passed, allowing the insertion of a malicious ...