Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5282How I Rewarded with USD?K Just With a Simple Search Form SQL injection Paypal yappare (@yappare) Bug Bounty2013-04-112023-06-13
5274SQL injections in Nokia sites. SQL injection Nokia Josip Franjkovic (@josipfranjkovic) Bug Bounty2013-07-302023-06-13
5252Tesla Motors blind SQL injection SQL injection Tesla Bitquark (@bitquark) Bug Bounty2014-02-232023-06-13
5248Magix Bug Bounty: magix.com (RCE, SQLi) and xara.com (LFI, XSS) RCE SQL injection LFI XSS Magix Julien Ahrens (@MrTuxracer) Bug Bounty2014-04-262023-06-13
5242Popping a shell on the Oculus developer portal SQL injection CSRF RCE IDOR Meta / Facebook Bitquark (@bitquark) Bug Bounty2014-08-312023-06-13
5241Step-by-step: exploiting SQL injection(s) in Oculus%27 website. SQL injection Meta / Facebook Josip Franjkovic (@josipfranjkovic) Bug Bounty2014-09-052023-06-13
5227Yahoo – Root Access SQL Injection – tw.yahoo.com SQL injection Yahoo! / Verizon Media Brett Buerhaus (@bbuerhaus) Bug Bounty2015-01-152023-06-13
5214Blind SQL Inejction [Hootsuite] Blind SQL injection Hootsuite Abdullah Hussam (@Abdulahhusam) Bug Bounty2015-08-012023-06-13
5195A Hilarious ESET Broken Authentication Vulnerability (one click free purchase) Authentication flaw SQL injection ESET Mohamed A. Baset Bug Bounty2016-02-122023-06-13
5191SQL Injection On MEGA.NZ SQL injection MEGA Naresh LamGade (@nlamgade) Bug Bounty2016-03-112023-06-13
5107Type Juggling and PHP Object Injection, and SQLi, Oh My! Type juggling PHP Object Injection Insecure deserialization SQL injection NA Justin Kennedy (@jstnkndy) Bug Bounty2017-02-072023-06-13
5102SQL injection in an UPDATE query - a bug bounty story! SQL injection NA Mahmoud Gamal (@Zombiehelp54) Bug Bounty2017-02-172023-06-13
5098Practical Exploitation of Error Based Sql Injection SQL injection NA Eslam Salem (@net_code) Bug Bounty2017-02-202023-06-13
5095Time-based Blind SQLi on news.starbucks.com Blind SQL injection Starbucks toctou Bug Bounty2017-02-262023-06-13
5079Tales of SugarCRM Security Horrors PHP Object Injection SQL injection Authentication bypass SugarCRM Egidio Romano / EgiX Bug Bounty2017-04-232023-06-13
5075Hacking the NHS for Fun and No Profit SQL injection LFI NHS Nathan (@NathOnSecurity) Bug Bounty2017-05-222023-06-13
4977Multiple vulnerabilities in Oracle EBS SQL injection XXE XSS NA Shubham Gupta (@hackerspider1) Bug Bounty2017-09-192023-06-13
4933SQL in everywhere. SQL injection NA Utkarsh Agrawal (@agrawalsmart7) Bug Bounty2017-11-162023-06-13
4922SQL Injection in rog.asus.com SQL injection Security code review Asus Corben Leo (@hacker_) Bug Bounty2017-11-302023-06-13
4868SQL injection with load file and into outfile SQL injection NA NoGe (@p4c3n0g3) Bug Bounty2018-02-052023-06-13
4836Union Based Sql injection Write up ->A private Company Site SQL injection NA Nur A Alam Dipu (@Dipu1A) Bug Bounty2018-03-122023-06-13
4820My Best Small Report Bounty Report in Private Program ( Django REST framework Admin Login ByPass ) SQL injection Authentication bypass Account takeover NA Mohamed Haron (@m7mdharon) Bug Bounty2018-04-012023-06-13
4810Source Code Analysis in YSurvey — Luminate bug Authentication bypass Authorization flaw SQL injection Yahoo! / Verizon Media Rojan Rijal (@uraniumhacker) Bug Bounty2018-04-102023-06-13
4808Please email me your password Blind XSS Blind SQL injection SMTP injection Account takeover NA Jasmin Laundry (@JR0ch17) Bug Bounty2018-04-112023-06-13
4772A Five Minute SQL-I SQL injection NA Ashish Jha Bug Bounty2018-05-062023-06-13