4366 | Gaining access to Uber%27s user data through AMPScript evaluation |
AMPScript injection |
Uber |
Shubham Shah (@infosec_au) |
Bug Bounty | 2019-01-14 | 2023-06-13 |
4242 | Discovering a zero day and getting code execution on Mozilla%27s AWS Network |
RCE |
Mozilla |
Shubham Shah (@infosec_au) |
Bug Bounty | 2019-03-19 | 2023-06-13 |
2442 | Taking over Uber accounts through voicemail |
Account takeover
Voicemail hacking |
Uber |
Shubham Shah (@infosec_au) |
Bug Bounty | 2021-06-27 | 2023-06-13 |
2106 | Sitecore Experience Platform Pre-Auth RCE - CVE-2021-42237 |
RCE
Insecure deserialization
Security code review |
Sitecore |
Shubham Shah (@infosec_au) |
Bug Bounty | 2021-11-01 | 2023-06-13 |
1971 | Turning bad SSRF to good SSRF: Websphere Portal |
SSRF |
HCL Technologies |
Shubham Shah (@infosec_au) |
Bug Bounty | 2021-12-26 | 2023-06-13 |
1911 | Stealing administrative JWT%27s through post auth SSRF (CVE-2021-22056) |
SSRF
CSRF |
VMware |
Shubham Shah (@infosec_au) |
Bug Bounty | 2022-01-17 | 2023-06-13 |
1582 | Hacking a Bank by Finding a 0day in DotCMS |
Directory traversal
Unrestricted file upload
RCE |
NA |
Shubham Shah (@infosec_au) |
Bug Bounty | 2022-05-03 | 2023-06-13 |
1486 | Chaining vulnerabilities to criticality in Progress WhatsUp Gold |
SSRF
Local File Disclosure
Information disclosure |
Progress (WhatsUp Gold) |
Shubham Shah (@infosec_au) |
Bug Bounty | 2022-06-09 | 2023-06-13 |
1428 | Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135) |
SSRF |
Atlassian |
Shubham Shah (@infosec_au) |
Bug Bounty | 2022-06-26 | 2023-06-13 |
887 | Exploiting Static Site Generators: When Static Is Not Actually Static |
SSRF
XSS
Security code review |
Netlify
Gatsby |
Shubham Shah (@infosec_au) |
Bug Bounty | 2022-10-28 | 2023-06-13 |
153 | Finding XSS in a million websites (cPanel CVE-2023-29489) |
Reflected XSS
Security code review |
cPanel |
Shubham Shah (@infosec_au) |
Bug Bounty | 2023-04-26 | 2023-06-13 |
143 | Exploiting an Order of Operations Bug to Achieve RCE in Oracle Opera |
RCE
Unrestricted file upload
Path traversal
Security code review |
Oracle (Opera) |
Shubham Shah (@infosec_au) |
Bug Bounty | 2023-04-30 | 2023-06-13 |