Hackerone reports 2022.10

admin 2022年10月29日08:50:22评论25 views字数 628阅读2分5秒阅读模式

23000$ for Authentication Bypass & File Upload & Arbitrary File Overwrite

https://medium.com/@h4x0r_dz/23000-for-authentication-bypass-file-upload-arbitrary-file-overwrite-2578b730a5f8

Local file read at https://████/ [HtUS]

👉 https://hackerone.com/reports/1626210

🔹 Severity: Critical | 💰 1,000 USD

🔹 Reported To: U.S. Dept Of Defense

🔹 Reported By: #sudi

🔹 State: 🟢 Resolved

🔹 Disclosed: October 14, 2022, 1:51pm (UTC)

Unauthenticated SQL Injection at █████████  [HtUS]

👉 https://hackerone.com/reports/1626226

🔹 Severity: Critical | 💰 1,000 USD

🔹 Reported To: U.S. Dept Of Defense

🔹 Reported By: #0xd0ff9

🔹 State: 🟢 Resolved

🔹 Disclosed: October 14, 2022, 5:54pm (UTC)

原文始发于微信公众号(安全圈的翻译官):Hackerone reports 2022.10

  • 左青龙
  • 微信扫一扫
  • weinxin
  • 右白虎
  • 微信扫一扫
  • weinxin
admin
  • 本文由 发表于 2022年10月29日08:50:22
  • 转载请保留本文链接(CN-SEC中文网:感谢原作者辛苦付出):
                   Hackerone reports 2022.10http://cn-sec.com/archives/1376452.html

发表评论

匿名网友 填写信息