Public access to objects in AWS S3 bucket
Medium
M
Mapbox
Submitted None
Team Summary
Official summary from Mapbox
On February 1st, 2017, Sahilsaif discovered an S3 bucket belonging to Mapbox which contained publicly accessible objects which should have been private. Using Sahilsaif's report, Mapbox mitigated the report by making the affected objects private.
Actions:
Reported by
ehsahil
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Bounty
$750.00
Submitted
Weakness
Information Disclosure