Loading HuntDB...

Comments Denial of Service in socialclub.rockstargames.com

Medium
R
Rockstar Games
Submitted None

Team Summary

Official summary from Rockstar Games

In this report, the researcher was able to demonstrate a POC utilizing control character injection that disabled a chain of comments in sections of the site containing UGC, particularly Jobs and Job playlists. Although denial-of-service attacks are typically closed as Not Applicable in our program, the POC for this could easily have caused other adverse effects for our users, so we chose to allow this report. With the researcher's help we were able to find and close this vulnerability.

Reported by ramsexy

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Code Injection