Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4333Protonmail XSS — Stored Stored XSS Bruteforce ProtonMail Chand Singh (@Chand_42) Bug Bounty2019-01-292023-06-13
4320Remote Code Execution via Path Traversal in the Device Metadata Authoring Wizard Path traversal RCE Microsoft Lee Christensen (@tifkin_) Bug Bounty2019-02-062023-06-13
4313How I hacked ASUS? Unrestricted file upload RCE Asus Mustafa Kemal Can (@muskecan) Bug Bounty2019-02-092023-06-13
4285Swiss_E-Voting_Publications XSS XXE RCE Missing authentication Authentication flaw Hardcoded credentials Swiss E-Voting setuid0 (@_setuid0_) Bug Bounty2019-02-212023-06-13
4281Bug Bounty 101 — Always Check The Source Code Lack of rate limiting Information disclosure NA Spazzy Bug Bounty2019-02-232023-06-13
4273Bypassing a restrictive JS sandbox JS sandbox breakout RCE NA Licencia para Hackear Bug Bounty2019-03-012023-06-13
4268Fixed : Brute-force Instagram account’s passwords Bruteforce Rate limiting bypass Meta / Facebook Sameer Rao Bug Bounty2019-03-052023-06-13
4258Escalating SSRF to RCE SSRF RCE NA Youssef A. Mohamed (@GeneralEG64) Bug Bounty2019-03-252023-06-13
4257Brute Forcing User IDS via CSRF To Delete all Users with CSRF attack. CSRF Bruteforce NA Armaan Pathan (@armaancrockroax) Bug Bounty2019-03-122023-06-13
4252WordPress 5.1 CSRF to Remote Code Execution CSRF RCE HTML injection WordPress Simon Scannell (@scannell_simon) Bug Bounty2019-03-132023-06-13
4242Discovering a zero day and getting code execution on Mozilla%27s AWS Network RCE Mozilla Shubham Shah (@infosec_au) Bug Bounty2019-03-192023-06-13
4225FileZilla Untrusted Search Path RCE FileZilla (EU-FOSSA 2) Chris Lyne (@lynerc) Bug Bounty2019-04-022023-06-13
4221Leaked Salesforce API access token at IKEA.com Information disclosure Salesforce Ikea Jonathan Bouman (@JonathanBouman) Bug Bounty2019-04-042023-06-13
4220Handlebars template injection and RCE in a Shopify app SSTI RCE Shopify Mahmoud Gamal (@Zombiehelp54) Bug Bounty2019-04-042023-06-13
4213How I got a trip to amsterdam through bug bounty Bruteforce NA Ninad Mathpati (@ninad_mathpati) Bug Bounty2019-04-072023-06-13
4210Dell KACE K1000 Remote Code Execution — the Story of Bug K1–18652 RCE Dropbox Julien Ahrens (@MrTuxracer) Bug Bounty2019-04-092023-06-13
4205[RCE] Remote code execution at api.PrivateProgram.com (CVE-2017-5638) RCE NA Mohamed Haron (@m7mdharon) Bug Bounty2019-04-122023-06-13
4195Code execution - Evernote RCE Path traversal Evernote Dhiraj (@mishradhiraj_) Bug Bounty2019-04-172023-06-13
4194PDFReacter SSRF to ROOT Level Local File Read which led to RCE SSRF RCE NA Armaan Pathan (@armaancrockroax) Bug Bounty2019-04-182023-06-13
4166Remote code execution On Microsoft edge using URL Protocol RCE Microsoft Matt harr0ey (@harr0ey) Bug Bounty2019-05-012023-06-13
4162ESI Injection Part 2: Abusing specific implementations ESI injection RCE SSRF HTTP header injection NA Philippe Arteau (@h3xstream) Bug Bounty2019-05-022023-06-13
4133How did I bypass a Custom Brute Force protection and why that solution is not a good idea? Bruteforce Authentication flaw NA dortz Bug Bounty2019-05-252023-06-13
4122REMOTE CODE EXECUTION ! 😜 Recon Wins RCE NA Vishnuraj Bug Bounty2019-06-042023-06-13
4107Admin Account total Information Disclosure Source code disclosure Information disclosure NA Nishant Saurav (@inishantsinha) Bug Bounty2019-06-152023-06-13
4104Complete Web Server Access Unrestricted file upload RCE NA Saad Ahmed (@XSaadAhmedX) Bug Bounty2019-06-152023-06-13