Bug Bounty

Mon
17
Nov

Ebay Inc Magento - Research Team discovered Bypass & Validation Vulnerability

Ebay Inc Magento - Research Team discovered Bypass & Validation Vulnerability

In the 1st qarter of the year the research team discovered a filter bypass and persistent mail encoding web vulnerability in the official ebay inc magento web-application (api). The bug had medium severity but the method behind was very tricky to exploit.

Technical Details

Wed
05
Nov

PayPal Inc fixed Filter Bypass & Profile Code Execution during Infrastructure Upgrades

Filter Bypass & Profile Code Execution fixed during Infrastructure Upgrades (PayPal)

In 2013 the core team member and ceo benjamin kunz mejri discovered a filter bypass and code execution vulnerability that was exploitable through a referer get request by the paypal api. The issue has been reported to paypal inc company in 2013 but the security officials was first unable to reproduce the bug. During some time has passed we continued to explain the officials with various methods and examples the impact of the issue. In 2014 we received a message back that the issue has been patched by multiple internal infrastructure upgrades.

Pages

Subscribe to RSS - Bug Bounty