Comments Denial of Service in socialclub.rockstargames.com
Medium
R
Rockstar Games
Submitted None
Team Summary
Official summary from Rockstar Games
In this report, the researcher was able to demonstrate a POC utilizing control character injection that disabled a chain of comments in sections of the site containing UGC, particularly Jobs and Job playlists. Although denial-of-service attacks are typically closed as Not Applicable in our program, the POC for this could easily have caused other adverse effects for our users, so we chose to allow this report. With the researcher's help we were able to find and close this vulnerability.
Actions:
Reported by
ramsexy
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Code Injection