Videos

Published on July 26th, 2019 📆 | 5209 Views ⚑

0

[Bug Bounty] Critical Account Takeover on iLOTTE.COM


Text to Speech


I just found Critical Bug on iLOTTE.COM. This bug able me to login without password ( Only need to know email ). This bug happened because the server didn't check the id with the oauth password.

Status :
- 08/07/2019 23:32 = Bug Reported
- 09/07/2019 14.48 = Triaged & accepted
- 15/07/2019 21.50 = Bug Fixed
- 25/07/2019 17.10 = Rewarded IDR 2.000.000 ( $153 maybe )


2019-07-26 14:05:55

source





Tagged with:



Comments are closed.