Loading HuntDB...

Possilbe Sub Domain takever at prestashop.algolia.com

A
Algolia
Submitted None
Reported by punkrock

Vulnerability Details

Technical details and impact analysis

Hey Sir It looks like `prestashop.algolia.com` has a A record pointing to `178.62.8.144` But when you visit `prestashop.algolia.com` you see a page hosted by "BC WebSolution" and I couldn't find any relation with Algolia Now what's suspicious here is http://178.62.8.144/ also serves the content of "BC WebSolution" Maybe the IP is in no more control of Algolia and has been allocated someone else while the DNS record at Algolia.com still point to the old IP If I am correct any vulnerability like XSS, File upload affecting the IP can be used in scope of `prestashop.algolia.com`

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted