Loading HuntDB...

Mars - HackerOne Reports

View on HackerOne
64
Total Reports
11
Critical
11
High
30
Medium
10
Low
Weakness: CRLF Injection
Weakness: Insecure Direct Object Reference (IDOR)
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Insecure Direct Object Reference (IDOR)
Weakness: Cross-site Scripting (XSS) - Reflected

Jolokia Reflected XSS

Reported by: ramzanrl | Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - Reflected

CSRF to delete a pet

Reported by: dd_06 | Disclosed:
Medium
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
Weakness: Insecure Direct Object Reference (IDOR)
Weakness: Improper Access Control - Generic
Weakness: Misconfiguration
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Privilege Escalation
Weakness: Privilege Escalation
Weakness: Misconfiguration
Weakness: Cleartext Storage of Sensitive Information
Page 1 of 4 Next