Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
196
From Django Debug Mode to PII Data Leak of more than 500+ Employees due Broken Access Control and IDOR
Debug mode enabled
IDOR
Information disclosure
JWT
Broken Access Control
Exposed registration page
NA
Aayush Vishnoi (@AayushVishnoi10)
Bug Bounty
2023-04-14
2023-06-13
114
How a simple Directory Listing leads to PII Data Leakage, Remote Code Execution and many more vulnerabilities on a HR management subdomain
RCE
Unrestricted file upload
Stored XSS
Information disclosure
Directory listing
NA
Aayush Vishnoi (@AayushVishnoi10)
Bug Bounty
2023-05-07
2023-06-13
51
Utilizing Historical URLs of an Organization to successfully execute SQL queries — Blind SQLi
Blind SQL injection
NA
Aayush Vishnoi (@AayushVishnoi10)
Bug Bounty
2023-05-26
2023-06-13
31
How a misconfigured Lotus Domino Server can lead to Disclosure of PII Data of Employees, Configuration Details about the Active Directory, etc
Lotus Domino
Security misconfiguration
Information disclosure
NA
Aayush Vishnoi (@AayushVishnoi10)
Bug Bounty
2023-06-04
2023-06-13