Creating multiple user with the same link which is sent to email after registeration

Disclosed: 2016-06-12 16:08:06 By girish_s_pattanashetty To veris
Unknown
Vulnerability Details
1. Go to the Link for register 2.Email will be sent to the user - Email id 3.Access the same Link in 2 different browser ( Google Chrome , Firefox) 4.Change the username in each browser !!!! 5. Still it works !!! I guess you got to know what the problem is !!!! the Link sent to the Email id for registration ( Activation Link) can be miss used !!!
Actions
View on HackerOne
Report Stats
  • Report ID: 123380
  • State: Closed
  • Substate: resolved
  • Upvotes: 1
Share this report