Lädt...

🕵️ U.S. Dept Of Defense: No Rate Limiting on https://██████/██████████/accounts/password/reset/ endpoint leads to Denial of Service


Nachrichtenbereich: 🕵️ Sicherheitslücken
🔗 Quelle: vulners.com


image
Summary: No-Rate Limit on Password reset endpoint results mail-spam functionality to be abused. Additionally, the password-reset link remain the same after each request. Description: Malicious user could Spear-target nga.mil user mail and Spam it for as many requests as he would like. Possible scenarios: Attacker could use this vulnerability to bomb out the email inbox of the victim. Attacker could send Spear-Phishing to the selected mail address. Attacker might cause denial of service to the mail servers. Step-by-step Reproduction Instructions Go to https://█████/█████/accounts/password/reset/ Click on "Send Email" and Capture the request on burp. Send to intruder, and start Sniping attack with NULL payloads. Suggested Mitigation/Remediation Actions Limiting the password reset request to once every X minutes. Use CAPTCHA verification after X requests. Asserting random password-reset link for each request. Similar reports: https://hackerone.com/reports/764122 https://hackerone.com/reports/791498 https://hackerone.com/reports/441161 Best Regards, Gal Nagli Impact Attacker could use this vulnerability to bomb out the email inbox of the victim. Attacker could send Spear-Phishing to the selected mail address. Attacker might cause denial of service to the mail... ...

🔧 🧠 Caching vs. Rate Limiting? 🤺 More Like Caching for Rate Limiting 🚀


📈 53.61 Punkte
🔧 Programmierung

🔧 What is Rate Limiting? Exploring the Role of Rate Limiting in Protecting Web APIs from Attacks


📈 53.61 Punkte
🔧 Programmierung

🕵️ Stripo Inc: No Rate Limiting on /reset-password-request/ endpoint


📈 51.12 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: Self XSS + CSRF Leads to Reflected XSS in https://████/


📈 40.72 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: Full account takeover of any user through reset password


📈 39.59 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: xss on reset password page


📈 39.59 Punkte
🕵️ Sicherheitslücken

🕵️ Smule: No Rate Limiting On Phone Number Login Leads to Login Bypass


📈 39.01 Punkte
🕵️ Sicherheitslücken

🔧 🚀 Introducing rate-bouncer: A Powerful Rate Limiting Middleware for Node.js


📈 38.05 Punkte
🔧 Programmierung

🔧 Introducing Rate Keeper: A Compact Utility for Robust Rate Limiting


📈 38.05 Punkte
🔧 Programmierung

🔧 Overcoming Hard Rate Limits: Efficient Rate Limiting with Token Bucketing and Redis


📈 38.05 Punkte
🔧 Programmierung

🕵️ U.S. Dept Of Defense: █████████ IDOR leads to disclosure of PHI/PII


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: CORS misconfiguration which leads to the disclosure


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: Unrestricted File Upload Leads to XSS & Potential RCE


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: IDOR leads to PII Leak


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: Email Takeover leads to permanent account deletion


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: AEM misconfiguration leads to Information disclosure


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: Client side authentication leads to Auth Bypass


📈 35.93 Punkte
🕵️ Sicherheitslücken

🕵️ XVIDEOS: Lack of Rate Limiting on Account Creation Endpoint


📈 35.26 Punkte
🕵️ Sicherheitslücken

🔧 Rate-limiting API Endpoint using Bucket4j in Spring


📈 35.26 Punkte
🔧 Programmierung

🕵️ U.S. Dept Of Defense: hardcoded password stored in javascript of https://████.mil


📈 34.4 Punkte
🕵️ Sicherheitslücken

🕵️ Cisco Aironet 8.2/8.3 802.11 Rate Limiting Reload Denial of Service


📈 32.79 Punkte
🕵️ Sicherheitslücken

🕵️ Cisco Aironet 8.2/8.3 802.11 Rate Limiting Reload Denial of Service


📈 32.79 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: XSS in Cisco Endpoint


📈 32.17 Punkte
🕵️ Sicherheitslücken

🕵️ U.S. Dept Of Defense: [█████] — DOM-based XSS on endpoint `/?s=`


📈 32.17 Punkte
🕵️ Sicherheitslücken