Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3593EN | Administrator level Privilege Escalation story Privilege escalation NA Samet Sahin (@sametsahinnet) Bug Bounty2020-03-192023-06-13
3592API DOCS takeover on Readme.io Subdomain takeover NA Oktavandi (@0ktavandi) Bug Bounty2020-03-192023-06-13
3591Remote Image Upload Leads to RCE (Inject Malicious Code to PHP-GD Image) Unrestricted file upload RCE NA Muhammad R. Maulana Bug Bounty2020-03-212023-06-13
3590The Ticklish XSS XSS NA Adnan Malik (@adnanmalikinfo) Bug Bounty2020-03-232023-06-13
3589Self XSS to Account Takeover Account takeover XSS CSRF NA Ch3ckM4te Bug Bounty2020-03-242023-06-13
3587XSS WAF & Character limitation bypass like a boss XSS NA Prial Islam Khan (@prial261) Bug Bounty2020-03-252023-06-13
3586Pentesting Cisco SD-WAN Part 1: Attacking vManage Cypher injection Stored XSS Cisco Julien Legras (@Julien_Legras) Bug Bounty2020-03-252023-06-13
3584Exploitation of the CVE-2018-15961 – Unrestricted File Upload in Adobe ColdFusion Unrestricted file upload NA Supras (@LdrTom) Bug Bounty2020-03-262023-06-13
3583Account Takeover Flow In Mail.ru s Ext.A Domain [ $150 ] Logic flaw Account takeover NA Myo Min Thu (@myominthu1337) Bug Bounty2020-03-262023-06-13
35821st Bug Bounty Write-Up — Open Redirect Vulnerability on Login Page Open redirect NA Phuriphat Boontanon (@zanezenzane) Bug Bounty2020-03-272023-06-13
3580I Want that Cookie !!! Logic flaw NA Adnan Malik (@infoadnanmalik) Bug Bounty2020-03-272023-06-13
3577OTP Bruteforce- Account Takeover OTP bruteforce Account takeover NA Ranjit Kumar Bug Bounty2020-03-292023-06-13
3576CVE-2019-17004—Semi Universal XSS affecting Firefox for iOS Universal XSS Mozilla Brave Software cliqz (@cliqz) Bug Bounty2020-03-302023-06-13
3574Limited freemarker ssti to arbitrary liql query and manage lithium cms SSTI NA Mert (@mertistaken) Bug Bounty2020-03-302023-06-13
3573Hacking makes me forget my pain SQL injection NA Abida Fahd Bug Bounty2020-03-312023-06-13
3572Akamai Web Application Firewall Bypass Journey: Exploiting “Google BigQuery” SQL Injection Vulnerability SQL injection NA Duc Nguyen (@ducnt_) Bug Bounty2020-03-312023-06-13
3570$3133.7 Google Bug Bounty Writeup- XSS Vulnerability! Reflected XSS Google Pethuraj (@Pethuraj) Bug Bounty2020-04-012023-06-13
3568Privilege Escalation - Hello Admin Privilege escalation NA Shrey Shah (@ShreySh43332033) Bug Bounty2020-04-022023-06-13
3567Account Take Over without user Interaction Password reset Information disclosure Account takeover NA Ravilla Bharath Bug Bounty2020-04-022023-06-13
3566Always escalate! From Self-XSS to Persistent XSS on Login Portal Self-XSS CSRF NA Phuriphat Boontanon (@zanezenzane) Bug Bounty2020-04-022023-06-13
3565Hundreds of internal servicedesks exposed due to COVID-19 Security misconfiguration NA Inti De Ceukelaire (@securinti) Bug Bounty2020-04-022023-06-13
3564iPhone Camera Hack Zero-Click Unauthorized Access to Sensitive Data Apple Ryan Pickren Bug Bounty2020-04-022023-06-13
3562Playing with JSON Web Tokens for Fun and Profit Password reset Email verification bypass NA Muhammad Qasim Munir (@MeetAn0nym0us) Bug Bounty2020-04-042023-06-13
3559How a Simple CSRF Attack Turned into a P1 Level Bug CSRF Account takeover NA Lady Secspeare (@bejuveria_) Bug Bounty2020-04-052023-06-13
3557$3K Bounty For Elastic-Search Takeover Elasticsearch Takeover Information disclosure NA Ashish Kunwar (@D0rkerDevil) Bug Bounty2020-04-062023-06-13