Loading HuntDB...

Infogram - HackerOne Reports

View on HackerOne
48
Total Reports
1
Critical
5
High
20
Medium
14
Low
Medium
Weakness: Cross-site Scripting (XSS) - Stored
Low
Weakness: Violation of Secure Design Principles
Weakness: Violation of Secure Design Principles
Low
Weakness: Improper Access Control - Generic
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - Stored
Low
Weakness: Violation of Secure Design Principles
Weakness: Violation of Secure Design Principles
Weakness: Improper Authentication - Generic
Weakness: Violation of Secure Design Principles

SPF Misconfiguration

Reported by: mr_r3boot | Disclosed:
Low
Weakness: Violation of Secure Design Principles

User Enumeration

Reported by: saikiran-10098 | Disclosed:
Low
Weakness: Information Disclosure
Weakness: Cross-site Scripting (XSS) - Stored

XSS on infogram.com

Reported by: mondhers | Disclosed:
High
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-Site Request Forgery (CSRF)
High
Weakness: Weak Password Recovery Mechanism for Forgotten Password

XSS when Shared

Reported by: haystack_needle | Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - Reflected

No Email Verification

Reported by: asad_anwar | Disclosed:
Medium
Weakness: Improper Certificate Validation
Page 1 of 3 Next