Get Mystery Box with random crypto!

Bugpoint

Logo of telegram channel bugpoint — Bugpoint B
Logo of telegram channel bugpoint — Bugpoint
Channel address: @bugpoint
Categories: Technologies
Language: English
Subscribers: 1.23K
Description from channel

Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg

Ratings & Reviews

3.00

2 reviews

Reviews can be left only by registered users. All reviews are moderated by admins.

5 stars

1

4 stars

0

3 stars

0

2 stars

0

1 stars

1


The latest Messages 17

2022-05-03 12:38:02
Blind XSS via Feedback form.

https://hackerone.com/reports/1339034

Severity: High | 1,250 USD
Reported To: Judge.me
Reported By: #b3hlull
State: Resolved
Disclosed: May 3, 2022, 9:36am (UTC)
109 views09:38
Open / Comment
2022-05-03 09:44:02
Self-DoS due to template injection via email field in password reset form on access.acronis.com

https://hackerone.com/reports/1265344

Severity: No Rating
Reported To: Acronis
Reported By: #sudo_bash
State: Informative
Disclosed: May 3, 2022, 6:41am (UTC)
136 views06:44
Open / Comment
2022-05-02 00:22:02
XSS at http://nextapps.mtnonline.com/search/suggest/q/{xss payload}

https://hackerone.com/reports/1244722

Severity: Medium
Reported To: MTN Group
Reported By: #homosec
State: Resolved
Disclosed: May 1, 2022, 9:20pm (UTC)
127 views21:22
Open / Comment
2022-05-02 00:22:01
XSS at videostore.mtnonline.com/GL/*.aspx via all parameters

https://hackerone.com/reports/1244731

Severity: Medium
Reported To: MTN Group
Reported By: #homosec
State: Resolved
Disclosed: May 1, 2022, 9:20pm (UTC)
130 views21:22
Open / Comment
2022-05-01 21:08:02
Enumerate class codes via yahoo dork - Can access any course under teacher - Sensitive information leaked

https://hackerone.com/reports/1514356

Severity: High
Reported To: Khan Academy
Reported By: #bughunterpol
State: Resolved
Disclosed: May 1, 2022, 6:05pm (UTC)
136 views18:08
Open / Comment
2022-04-30 14:58:02
com.nextcloud.client bypass the protection lock in andoid app v 3.18.1 latest version.

https://hackerone.com/reports/1450368

Severity: Low | 200 USD
Reported To: Nextcloud
Reported By: #dashingjaved
State: Resolved
Disclosed: April 30, 2022, 11:56am (UTC)
18 views11:58
Open / Comment
2022-04-29 20:40:02
Reflected XSS due to vulnerable version of sockjs

https://hackerone.com/reports/1100326

Severity: Medium | 250 USD
Reported To: Automattic
Reported By: #chip_sec
State: Resolved
Disclosed: April 29, 2022, 5:38pm (UTC)
134 views17:40
Open / Comment
2022-04-29 20:04:01
Hardcoded AWS credentials in ███████.msi

https://hackerone.com/reports/1368690

Severity: Critical
Reported To: 8x8
Reported By: #chip_sec
State: Resolved
Disclosed: April 29, 2022, 5:01pm (UTC)
147 views17:04
Open / Comment
2022-04-29 17:08:03
Reflected XSS [██████]

https://hackerone.com/reports/1309385

Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #fdeleite
State: Resolved
Disclosed: April 29, 2022, 2:06pm (UTC)
62 views14:08
Open / Comment
2022-04-29 17:08:02
Reflected XSS [███]

https://hackerone.com/reports/1309237

Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #fdeleite
State: Resolved
Disclosed: April 29, 2022, 2:05pm (UTC)
61 views14:08
Open / Comment