Loading HuntDB...

Kartpay - HackerOne Reports

View on HackerOne
19
Total Reports
2
Critical
2
High
4
Medium
6
Low

Host Header Injection

Reported by: streetdragon | Disclosed:
Medium
Weakness: HTTP Request Smuggling
Weakness: Information Exposure Through an Error Message
Weakness: Violation of Secure Design Principles
Weakness: Insufficient Session Expiration

URl redirection

Reported by: ziel | Disclosed:
Medium
Weakness: Open Redirect
Weakness: Information Disclosure
Weakness: Information Disclosure
Weakness: Information Disclosure
Weakness: Improper Authentication - Generic
Weakness: Violation of Secure Design Principles
Weakness: Violation of Secure Design Principles

Admin/Info lekage

Reported by: abhhi | Disclosed:
Low
Weakness: Information Disclosure
Weakness: Cross-site Scripting (XSS) - Reflected
Medium
Weakness: Open Redirect