Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4201Google Groups Authorization Bypass Authorization flaw Google Daniel Marad Bug Bounty2019-04-152023-06-13
4200How I hacked Vending Machine Violation of secure design principles NA Valeriy Shevchenko (@Krevetk0Valeriy) Bug Bounty2019-04-152023-06-13
4199Just 5 minute to get my 2nd stored XSS on Edmodo.com Stored XSS Edmodo ZishanAdThandar (@ZishanAdThandar) Bug Bounty2019-04-152023-06-13
4198How i found credential enriched redis dump File disclosure Information disclosure NA Ashish Kunwar (@D0rkerDevil) Bug Bounty2019-04-162023-06-13
4197A $5000 IDOR… IDOR NA Mr.Hacker (@mr_hacker0007) Bug Bounty2019-04-162023-06-13
4196Banner Grabbing to DoS and Memory Corruption DoS Information disclosure NA Daniel V. (@d4niel_v) Bug Bounty2019-04-162023-06-13
4195Code execution - Evernote RCE Path traversal Evernote Dhiraj (@mishradhiraj_) Bug Bounty2019-04-172023-06-13
4194PDFReacter SSRF to ROOT Level Local File Read which led to RCE SSRF RCE NA Armaan Pathan (@armaancrockroax) Bug Bounty2019-04-182023-06-13
4193Scary Tickets😨 Ticket Trick NA Rojan Rijal (@uraniumhacker) Bug Bounty2019-04-192023-06-13
4192Responsible disclosure: improper access control in Gitlab private project. Authorization flaw GitLab Riccardo Padovani (@rpadovani93) Bug Bounty2019-04-192023-06-13
4191Twitter - protected tweets exposure Information disclosure Twitter Terjanq (@terjanq) Bug Bounty2019-04-192023-06-13
4190[CONFIRMATION BYPASS ] Email verification bypass Information disclosure NA Navneet (@na5n33t) Bug Bounty2019-04-212023-06-13
4189Ssrf to Read Local Files and Abusing the AWS metadata SSRF NA Pratik Yadav (@PratikY9967) Bug Bounty2019-04-212023-06-13
4187[XSS] Reflected XSS Bypass Filter Reflected XSS NA Mohamed Sayed (@FlEx0Geek) Bug Bounty2019-04-232023-06-13
4186Yet Other Examples of Abusing CSRF in Logout CSRF NA Soroush Dalili (@irsdl) Bug Bounty2019-04-232023-06-13
4185The neglected bug that can infect All Facebook users who pay for leads ads. CSV injection Meta / Facebook Hesham Watany Bug Bounty2019-04-232023-06-13
4184Facebook’s Burglary Shopping List Information disclosure Meta / Facebook John Moss (@x41x41x41) Bug Bounty2019-04-232023-06-13
4183Getting access to Zendesk’s Google Cloud and Artifactory from GitHub dotfile repos Information disclosure Zendesk Ruby Nealon (@_ruby) Bug Bounty2019-04-232023-06-13
4182A picture that steals data Information disclosure NA Sergey Kashatov (@iframe0x01) Bug Bounty2019-04-242023-06-13
4181CSRF Attack can lead to Stored XSS CSRF Stored XSS NA Mohamed Sayed (@FlEx0Geek) Bug Bounty2019-04-252023-06-13
4180The journey of Web Cache + Firewall Bypass to SSRF to AWS credentials compromise! LFI SSRF WAF bypass Cloudflare bypass NA Avinash Jain (@logicbomb_1) Bug Bounty2019-04-252023-06-13
4179Stealing local storage data through XSS Stored XSS Account takeover NA Harshad Gaikwad (@h4rsh4d) Bug Bounty2019-04-252023-06-13
4178Missing Authorization check while deleting App Review for Marketing API Authorization flaw Meta / Facebook Family guy Bug Bounty2019-04-252023-06-13
4177[sidefx][Poc] user enumeration & no rate limeted in send message function Username enumeration Lack of rate limiting SideFX Abdelhak Kharroubi Bug Bounty2019-04-262023-06-13
4176for PayPal security team,“get user balances and transaction details” is not a vulnerability! Information disclosure Paypal Todaro (@tod4ro) Bug Bounty2019-04-262023-06-13