support-portal

1 article
sort: new top best
clear filter
0 8/10

A company was compromised by chaining an IDOR vulnerability in a support ticket API with a blind XSS vulnerability in the internal ticket management system. The attacker leveraged blind XSS to extract ticket IDs (which were otherwise hard to brute-force), then used IDOR to access a password reset ticket from Slack that contained registration links to company channels.

Inti De Ceukelaire Harsh Jaiswal XSS Hunter Slack Facebook Workplace
ansariosama.com · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details