Get Mystery Box with random crypto!

Bugpoint

Logo of telegram channel bugpoint — Bugpoint B
Logo of telegram channel bugpoint — Bugpoint
Channel address: @bugpoint
Categories: Technologies
Language: English
Subscribers: 1.23K
Description from channel

Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg

Ratings & Reviews

3.00

2 reviews

Reviews can be left only by registered users. All reviews are moderated by admins.

5 stars

1

4 stars

0

3 stars

0

2 stars

0

1 stars

1


The latest Messages

2022-09-02 00:39:02
IDOR on TikTok Ads Endpoint

https://hackerone.com/reports/1527906

Severity: Medium | 2,500 USD
Reported To: TikTok
Reported By: #sinayeganeh
State: Resolved
Disclosed: September 1, 2022, 9:23pm (UTC)
85 views21:39
Open / Comment
2022-09-02 00:03:03
Sensitive Information Disclosure Through Config File

https://hackerone.com/reports/1397788

Severity: High
Reported To: MTN Group
Reported By: #dh0pe
State: Resolved
Disclosed: September 1, 2022, 8:50pm (UTC)
96 views21:03
Open / Comment
2022-09-02 00:03:02
Default Admin Username and Password on remedysso.mtncameroon.net

https://hackerone.com/reports/1397786

Severity: High
Reported To: MTN Group
Reported By: #dh0pe
State: Resolved
Disclosed: September 1, 2022, 8:50pm (UTC)
91 views21:03
Open / Comment
2022-09-01 23:27:02
Password reset token leak on third party website via Referer header [cloudivr.mtnbusiness.com.ng]

https://hackerone.com/reports/1320242

Severity: Medium
Reported To: MTN Group
Reported By: #ibrahimatix0x01
State: Resolved
Disclosed: September 1, 2022, 8:21pm (UTC)
99 views20:27
Open / Comment
2022-09-01 20:41:02
Remote code execution due to unvalidated file upload

https://hackerone.com/reports/1164452

Severity: Critical
Reported To: MTN Group
Reported By: #aliyugombe
State: Resolved
Disclosed: September 1, 2022, 5:29pm (UTC)
130 views17:41
Open / Comment
2022-09-01 19:08:02
API Key reported in #1465145 not rotated and thus is still valid and can be used by anyone

https://hackerone.com/reports/1591770

Severity: Low
Reported To: Adobe
Reported By: #aneeeketh
State: Informative
Disclosed: September 1, 2022, 4:05pm (UTC)
140 views16:08
Open / Comment
2022-09-01 17:33:02
Remote denial of service in HyperLedger Fabric

https://hackerone.com/reports/1635854

Severity: High | 1,500 USD
Reported To: Hyperledger
Reported By: #fatal0
State: Resolved
Disclosed: September 1, 2022, 2:05pm (UTC)
148 views14:33
Open / Comment
2022-09-01 12:33:01
Any expired reset password link can still be used to reset the password

https://hackerone.com/reports/1615790

Severity: Low | 100 USD
Reported To: Acronis
Reported By: #mrccrqr
State: Resolved
Disclosed: September 1, 2022, 9:31am (UTC)
158 views09:33
Open / Comment
2022-09-01 03:09:03
Password reset tokens sent to CSP reporting endpoints

https://hackerone.com/reports/1626281

Severity: Low | 250 USD
Reported To: Snapchat
Reported By: #mahfujwhh
State: Resolved
Disclosed: August 31, 2022, 11:53pm (UTC)
78 views00:09
Open / Comment
2022-08-31 19:02:02
Enable 2Fa verification without verifying email leads account takeover

https://hackerone.com/reports/1618021

Severity: Medium | 350 USD
Reported To: Cloudflare Public Bug Bounty
Reported By: #motu-vai
State: Resolved
Disclosed: August 31, 2022, 3:43pm (UTC)
141 views16:02
Open / Comment