Loading HuntDB...

Ping Identity - HackerOne Reports

View on HackerOne
11
Total Reports
0
Critical
2
High
3
Medium
5
Low

CSRF in Inviting users

Reported by: rijalrojan | Disclosed:
High
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: Violation of Secure Design Principles
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Privilege Escalation
Weakness: Server-Side Request Forgery (SSRF)
Bounty: $450.00
Weakness: Improper Access Control - Generic
Bounty: $100.00
Weakness: Improper Authentication - Generic
Weakness: Information Exposure Through Sent Data
Bounty: $150.00
Weakness: Insufficient Session Expiration
Weakness: Information Disclosure
Bounty: $150.00