Channel address:
Categories:
Technologies
Language: English
Subscribers:
1.23K
Description from channel
Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg
Ratings & Reviews
Reviews can be left only by registered users. All reviews are moderated by admins.
5 stars
1
4 stars
0
3 stars
0
2 stars
0
1 stars
1
The latest Messages
2022-09-02 00:39:02
IDOR on TikTok Ads Endpoint https://hackerone.com/reports/1527906
Severity: Medium |
2,500 USD Reported To: TikTok
Reported By: #sinayeganeh
State: Resolved
Disclosed: September 1, 2022, 9:23pm (UTC)
85 views21:39
2022-09-02 00:03:03
Sensitive Information Disclosure Through Config File https://hackerone.com/reports/1397788
Severity: High
Reported To: MTN Group
Reported By: #dh0pe
State: Resolved
Disclosed: September 1, 2022, 8:50pm (UTC)
96 views21:03
2022-09-02 00:03:02
Default Admin Username and Password on remedysso.mtncameroon.net https://hackerone.com/reports/1397786
Severity: High
Reported To: MTN Group
Reported By: #dh0pe
State: Resolved
Disclosed: September 1, 2022, 8:50pm (UTC)
91 views21:03
2022-09-01 23:27:02
Password reset token leak on third party website via Referer header [cloudivr.mtnbusiness.com.ng] https://hackerone.com/reports/1320242
Severity: Medium
Reported To: MTN Group
Reported By: #ibrahimatix0x01
State: Resolved
Disclosed: September 1, 2022, 8:21pm (UTC)
99 views20:27
2022-09-01 20:41:02
Remote code execution due to unvalidated file upload https://hackerone.com/reports/1164452
Severity: Critical
Reported To: MTN Group
Reported By: #aliyugombe
State: Resolved
Disclosed: September 1, 2022, 5:29pm (UTC)
130 views17:41
2022-09-01 19:08:02
API Key reported in #1465145 not rotated and thus is still valid and can be used by anyone https://hackerone.com/reports/1591770
Severity: Low
Reported To: Adobe
Reported By: #aneeeketh
State: Informative
Disclosed: September 1, 2022, 4:05pm (UTC)
140 views16:08
2022-09-01 17:33:02
Remote denial of service in HyperLedger Fabric https://hackerone.com/reports/1635854
Severity: High |
1,500 USD Reported To: Hyperledger
Reported By: #fatal0
State: Resolved
Disclosed: September 1, 2022, 2:05pm (UTC)
148 views14:33
2022-09-01 12:33:01
Any expired reset password link can still be used to reset the password https://hackerone.com/reports/1615790
Severity: Low |
100 USD Reported To: Acronis
Reported By: #mrccrqr
State: Resolved
Disclosed: September 1, 2022, 9:31am (UTC)
158 views09:33
2022-09-01 03:09:03
Password reset tokens sent to CSP reporting endpoints https://hackerone.com/reports/1626281
Severity: Low |
250 USD Reported To: Snapchat
Reported By: #mahfujwhh
State: Resolved
Disclosed: August 31, 2022, 11:53pm (UTC)
78 views00:09
2022-08-31 19:02:02
Enable 2Fa verification without verifying email leads account takeover https://hackerone.com/reports/1618021
Severity: Medium |
350 USD Reported To: Cloudflare Public Bug Bounty
Reported By: #motu-vai
State: Resolved
Disclosed: August 31, 2022, 3:43pm (UTC)
141 views16:02