4945 | Non-persistent XSS at Microsoft -Adesh Kolte |
Reflected XSS |
Microsoft |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2017-11-05 | 2023-06-13 |
4944 | Multiple Intel Vulnerabilities-Adesh Kolte |
Open redirect
Directory listing |
Intel |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2017-11-05 | 2023-06-13 |
4943 | Get your Microsoft account hijacked by simply clicking connect button -Adesh Kolte |
Stored XSS |
Microsoft |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2017-11-06 | 2023-06-13 |
4908 | Microsoft SharePoint%27s %27Follow%27 Feature XSS (CVE-2017–8514) -Adesh Kolte |
XSS |
Microsoft |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2017-12-21 | 2023-06-13 |
4885 | Asus Cross Site Scrpting And Directory Listing Vulnerability |
Directory listing
XSS |
Asus |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-01-23 | 2023-06-13 |
4862 | Oracle Cross Site Scripting Vulnerability -Adesh Kolte |
Reflected XSS |
Oracle |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-02-10 | 2023-06-13 |
4744 | How I Earned $750 Bounty Reward From AT&T bug Bounty -Adesh Kolte |
RCE
Clickjacking
XSS
Same Origin Method Execution |
AT&T |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-06-01 | 2023-06-13 |
4735 | How I found XSS via SSRF vulnerability -Adesh Kolte |
SSRF
XSS |
CERT-EU
Motorola
Stanford |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-06-07 | 2023-06-13 |
4627 | SQL Injection Vulnerability In University Of Cambridge |
SQL injection |
Cambridge |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-08-24 | 2023-06-13 |
4530 | Microsoft CSRF Vulnerability |
CSRF |
Microsoft |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-10-12 | 2023-06-13 |
4428 | Proof Of Concept Nokia Cross Site Scripting |
XSS |
Nokia |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-12-09 | 2023-06-13 |
4014 | Full Account Takeover via Changing Email And Password of any User through API Parameters |
IDOR
Password reset
Account takeover |
NA |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2019-07-26 | 2023-06-13 |
3889 | How I made 1000$ with AT&T Bug Bounty(H1) |
CSRF
Account takeover |
AT&T |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2019-10-02 | 2023-06-13 |
3716 | Cross Site Request Forgery vulnerability Leads to User Profile Change in Microsoft Express Logic |
CSRF |
Microsoft |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2020-01-21 | 2023-06-13 |
3357 | API Endpoint leads to Account Takeover In Android Application |
Exposed token generation endpoint
Information disclosure |
NA |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2020-06-28 | 2023-06-13 |