Loading HuntDB...

Phishing user to download malicious app could lead to leakage of User Access Token, Email, Name and Profile photo via exported RemoteService

Low
Z
Zomato
Submitted None

Team Summary

Official summary from Zomato

Thanks @shivasurya for helping us keep @zomato secure :)

Reported by libcontainer

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Bounty

$300.00

Submitted

Weakness

Information Disclosure