1286 | How I earned 500$ by uploading a file: write-up of one of my first bug bounty |
Unrestricted file upload |
Semrush |
Riccardo Malatesta (@seeu_inspace) |
Bug Bounty | 2022-08-02 | 2023-06-13 |
1285 | Multiple bugs in one program leads to 1500€ |
Privilege escalation
IDOR
Authorization flaw |
NA |
can1337 (@canmustdie) |
Bug Bounty | 2022-08-02 | 2023-06-13 |
1284 | (ZOHO) Manage Engine Desktop Central – SQL Injection / Arbitrary File Write |
SQL injection
Arbitrary file write
Path traversal |
Zoho |
Tom Ellson (@tde_sec) |
Bug Bounty | 2022-08-02 | 2023-06-13 |
1283 | XSS in Gmail%27s Amp4Email |
XSS |
Google |
Adi "Adico" Cohen (@wir3less2) |
Bug Bounty | 2022-08-02 | 2023-06-13 |
1282 | Elasticsearch A Easy Win For Bug Bounty Hunters || How To Find and Report |
Information disclosure |
NA |
Tamim Hasan (@tamimhasan404) |
Bug Bounty | 2022-08-03 | 2023-06-13 |
1281 | Hijacking email with Cloudflare Email Routing |
HTTP response manipulation
Privilege escalation |
NA |
Albert Pedersen (@AlbertSPedersen) |
Bug Bounty | 2022-08-03 | 2023-06-13 |
1280 | Came looking for SSRF and found XSS |
XSS
WAF bypass |
NA |
Ibrahim Radi (@ibraradi9) |
Bug Bounty | 2022-08-04 | 2023-06-13 |
1279 | QNAP Poisoned XML Command Injection (Silently Patched) |
OS command injection
RCE |
QNAP |
Jake Baines (@Junior_Baines) |
Bug Bounty | 2022-08-04 | 2023-06-13 |
1278 | Symlinks as mount portals: Abusing container mount points on MikroTik%27s RouterOS to gain code execution |
Container escape
Local Privilege Escalation |
MikroTik |
nns |
Bug Bounty | 2022-08-05 | 2023-06-13 |
1277 | CVE-2022-31660 and CVE-2022-31661 (FIXED): VMware Workspace ONE Access, Identity Manager, and vRealize Automation LPE |
Local Privilege Escalation |
VMware |
Spencer McIntyre (@zeroSteiner) |
Bug Bounty | 2022-08-05 | 2023-06-13 |
1276 | Revisiting OMI: Analysis of CVE-2022-29149, a privilege escalation vulnerability in Azure OMI |
Local Privilege Escalation
Cloud |
Microsoft |
Nir Ohfeld (@nirohfeld) |
Bug Bounty | 2022-08-05 | 2023-06-13 |
1275 | How i was able to get 29 free products. | Bug Bounty |
Race condition |
NA |
Fırat |
Bug Bounty | 2022-08-06 | 2023-06-13 |
1274 | CVE-2022-29582 - An io_uring vulnerability |
Memory corruption |
Google |
Jayden (@Awarau1) |
Bug Bounty | 2022-08-06 | 2023-06-13 |
1273 | Irremovable guest in facebook event — Facebook bug bounty |
Logic flaw |
Meta / Facebook |
Rajiv Gyawali (@rajiv_gyawali) |
Bug Bounty | 2022-08-06 | 2023-06-13 |
1272 | Liferay revisited: A tale of 20k$ |
RCE |
NA |
VNG Security Response Center (@vngsecresponse) |
Bug Bounty | 2022-08-06 | 2023-06-13 |
1271 | 2FA Bypass via Google Identity & OAuth Login |
MFA bypass
Account takeover |
NA |
Sharat Kaikolamthuruthil (@sharp488) |
Bug Bounty | 2022-08-07 | 2023-06-13 |
1270 | SSD Advisory – Apple Safari ICU Out-Of-Bounds Write |
Memory corruption
Out-of-bounds Write |
Apple |
Dohyun Lee (@l33d0hyun) |
Bug Bounty | 2022-08-07 | 2023-06-13 |
1269 | Stored XSS in app.gitbook.com |
Stored XSS |
GitBook |
Mohammad Alfin Hidayatullah (@Alpinbrainsec) |
Bug Bounty | 2022-08-08 | 2023-06-13 |
1268 | From Shodan to RCE: That one time I hacked a Fortune 500 company. |
Missing authentication
Arbitrary file read
RCE
Exposed Jenkins instance |
NA |
vimanari_ (@vimanari_) |
Bug Bounty | 2022-08-08 | 2023-06-13 |
1267 | Simple Open Redirect Bypass. |
Open redirect |
NA |
Harshad Gaikwad (@h4rsh4d) |
Bug Bounty | 2022-08-09 | 2023-06-13 |
1266 | Bypassed Cloudflare’s Web Application Firewall (WAF) |
XSS
HTML injection
WAF bypass |
NA |
Ansh Vaid (@anshvaid4) |
Bug Bounty | 2022-08-09 | 2023-06-13 |
1265 | Dancing on the architecture of VMware Workspace ONE Access (ENG) |
Authentication bypass
SQL injection
RCE |
VMware |
Petrus Viet (@VietPetrus) |
Bug Bounty | 2022-08-09 | 2023-06-13 |
1264 | From Shared Dash to Root Bash :: Pre-Authenticated RCE in VMWare vRealize Operations Manager |
Authentication bypass
Information disclosure
Local Privilege Escalation |
VMware |
Steven Seeley (@steventseeley) |
Bug Bounty | 2022-08-09 | 2023-06-13 |
1263 | Advisory: Cisco Small Business RV Series Routers Web Filter Database Update Command Injection Vulnerability |
OS command injection
RCE |
Cisco |
Quentin Kaiser (@QKaiser) |
Bug Bounty | 2022-08-09 | 2023-06-13 |
1262 | Security Implications of URL Parsing Differentials |
Open redirect
URL parsing differentials bug
URL parsing issue |
Thomas Chauchefoin (@swapgs) |
Security Implications of URL Parsing Differentials |
Bug Bounty | 2022-08-09 | 2023-06-13 |