pantheon

2 articles
sort: new top best
clear filter
0 4/10

Researcher discovered a subdomain takeover vulnerability in Bugcrowd's bugcrowdtrafficcontrol.com domain by exploiting misconfigured DNS pointing to Fastly and Pantheon services, allowing registration of the domain in his own CDN account. The vulnerability was reported to Bugcrowd and closed as N/A despite receiving a $600 bounty.

Bugcrowd bugcrowdtrafficcontrol.com Fastly CloudFront Pantheon Cloudflare MuhammadKhizerJaved
blog.securitybreached.org · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details
0 3/10

A subdomain takeover vulnerability was discovered on a Pantheon-hosted domain where an unclaimed subdomain displaying 'Unknown Site' could be claimed by registering a Pantheon account and routing a sandbox domain to the vulnerable subdomain, allowing content injection.

Pantheon Donald J Trump
smaranchand.com.np · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details