Loading HuntDB...

http://cpanel.hostinger.com/demo exposes Notifications and PII info

Medium
H
hostinger
Submitted None

Team Summary

Official summary from hostinger

Summary: Security researcher discovered that http://cpanel.hostinger.com/demo endpoint was exposing several confidential records through notifications window. Closure conclusion: All notifications were cleared to ensure that sensitive data would not be available.

Reported by nismo

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Misconfiguration