Loading HuntDB...

Public access to objects in AWS S3 bucket

Medium
M
Mapbox
Submitted None

Team Summary

Official summary from Mapbox

On February 1st, 2017, Sahilsaif discovered an S3 bucket belonging to Mapbox which contained publicly accessible objects which should have been private. Using Sahilsaif's report, Mapbox mitigated the report by making the affected objects private.

Reported by ehsahil

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Bounty

$750.00

Submitted

Weakness

Information Disclosure