Invision Power Services, Inc. - HackerOne Reports
View on HackerOne3
Total Reports
0
Critical
2
High
1
Medium
0
Low
support.invisionpower.com takeover the subdomain with Zendesk
Reported by:
fthacker101
|
Disclosed:
Medium
Weakness: Privilege Escalation
XSS with Visual Language Editor tags
Reported by:
mpiosik
|
Disclosed:
High
Weakness: Cross-site Scripting (XSS) - Stored
PHP Code Injection through "previewBlock()" method
Reported by:
egix
|
Disclosed:
High
Weakness: Code Injection