Bug Report #23JAN135 (subdomain takeover via shopify )
High
M
Mars
Submitted None
Team Summary
Official summary from Mars
The researcher kuriyama discovered a subdomain takeover vulnerability affecting ██████████, which was pointing to an unclaimed Shopify instance. The researcher successfully demonstrated the takeover by claiming the subdomain and setting up a proof-of-concept storefront.
Actions:
Reported by
kuriyama
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Privilege Escalation