Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5274SQL injections in Nokia sites. SQL injection Nokia Josip Franjkovic (@josipfranjkovic) Bug Bounty2013-07-302023-06-13
5273Multiple Open URL Redirection Vulnerability on Facebook worth $1500 Open redirect Meta / Facebook Arul Kumar (@ArulVaiyapuri) Bug Bounty2022-08-052023-06-13
5272Delete any Photo from Facebook by Exploiting Support Dashboard - $12,500 Bug IDOR Meta / Facebook Arul Kumar (@ArulVaiyapuri) Bug Bounty2013-09-012023-06-13
5271Removing Covers Images on Friendship Pages, on Facebook Authorization flaw Meta / Facebook Jack Whitton (@fin1te) Bug Bounty2013-09-252023-06-13
5270PayPal Bug Bounty: PayPaltech.com E-Mail Injection Email injection Paypal Julien Ahrens (@MrTuxracer) Bug Bounty2013-09-262023-06-13
5269Facebook CSRF leading to full account takeover (fixed) CSRF Account takeover Meta / Facebook Josip Franjkovic (@josipfranjkovic) Bug Bounty2013-10-182023-06-13
5268Content Types and XSS: Facebook Studio XSS Meta / Facebook Jack Whitton (@fin1te) Bug Bounty2013-10-212023-06-13
5267Facebook bug bounty: secondary damage (one report that leads to more bugs), fairness, and why I really like reporting to Facebook CSRF Meta / Facebook Josip Franjkovic (@josipfranjkovic) Bug Bounty2013-10-212023-06-13
5266LFI in Nokia maps LFI Nokia Shashank (@cyberboyIndia) Bug Bounty2013-10-222023-06-13
5265Nokia email app pwnage XSS Nokia Shashank (@cyberboyIndia) Bug Bounty2013-10-222023-06-13
5264Instagram%27s One-Click Privacy Switch CSRF Meta / Facebook Jack Whitton (@fin1te) Bug Bounty2013-10-312023-06-13
5263Oracle xss XSS Oracle Shashank (@cyberboyIndia) Bug Bounty2013-11-172023-06-13
5261Heroku Directory Transversal Path traversal Heroku Shashank (@cyberboyIndia) Bug Bounty2013-12-032023-06-13
5260Abusing CORS for an XSS on Flickr XSS Flickr Jack Whitton (@fin1te) Bug Bounty2013-12-122023-06-13
5259Flickr XSS (Stored / DOM XSS) XSS Flickr Matt Austin (@mattaustin) Bug Bounty2013-12-182023-06-13
5258Imgur xss XSS Imgur Shashank (@cyberboyIndia) Bug Bounty2013-12-192023-06-13
5257Waze arbitrary file upload Unrestricted file upload XSS Google (Waze) Shashank (@cyberboyIndia) Bug Bounty2013-12-252023-06-13
5256Google Sites: A Tale of Five Vulnerabilities XSS LFI HTML injection Google Bitquark (@bitquark) Bug Bounty2013-12-302023-06-13
5255How I hacked Github again. Open redirect Account takeover Information disclosure GitHub Egor Homakov (@homakov) Bug Bounty2014-02-072023-06-13
5254How I was able to track the location of any Tinder user. Information disclosure Tinder Max Veytsman (@mveytsman) Bug Bounty2014-02-192023-06-13
5253GitHub RCE Writeup RCE GitHub joernchen (@joernchen) Bug Bounty2014-02-222023-06-13
5252Tesla Motors blind SQL injection SQL injection Tesla Bitquark (@bitquark) Bug Bounty2014-02-232023-06-13
5251Google Exploit – Steal Account Login Email Addresses Information disclosure Google Tom Anthony (@TomAnthonySEO) Bug Bounty2014-03-082023-06-13
5250Facebook – Send Notifications to any User Exploit Logic flaw Meta / Facebook Brett Buerhaus (@bbuerhaus) Bug Bounty2014-04-072023-06-13
5249A Tale of 7 Vulnerabilities Stored XSS Reflected XSS Default credentials Privilege escalation Paypal Patrik Fehrenbach (@ITSecurityguard) Bug Bounty2014-04-202023-06-13